VDB

CNVD-2020-18610

CNVD-2020-18610 PUBLISHED

Intel Converged Security and Management Engine(CSME)和Intel TXE都是美国英特尔(Intel)公司的产品。Intel Converged Security and Management Engine是一款安全管理引擎。Intel TXE是一款使用在CPU(中央处理器)中具有硬件验证功能的信任执行引擎。 Intel TXE和Intel Converged Security and Management Engine存在授权问题漏洞。攻击者可利用该漏洞绕过身份验证,提升权限。

Affected Products

VendorProductVersions
Intel Intel Converged Security and Management Engine(CSME) <12.0.45
Intel Intel Converged Security and Management Engine(CSME) <13.0.10
Intel Intel Converged Security and Management Engine(CSME) <14.0.10
Intel Intel Converged Security and Management Engine(CSME) <11.8.70
Intel Intel TXE <4.0.20
Intel Intel TXE <3.1.70
Intel Intel Converged Security and Management Engine(CSME) <11.22.70
Intel Intel Converged Security and Management Engine(CSME) <11.11.70

Timeline

  • Dec 6, 2019 CVE ID Reserved
  • Mar 22, 2020 CVE Published
Open in Interactive Console →
$ Console Community · 100/wk Open console ›