VDB
CNVD-2020-18610
CNVD-2020-18610
PUBLISHED
Intel Converged Security and Management Engine(CSME)和Intel TXE都是美国英特尔(Intel)公司的产品。Intel Converged Security and Management Engine是一款安全管理引擎。Intel TXE是一款使用在CPU(中央处理器)中具有硬件验证功能的信任执行引擎。 Intel TXE和Intel Converged Security and Management Engine存在授权问题漏洞。攻击者可利用该漏洞绕过身份验证,提升权限。
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Intel Intel Converged Security and Management Engine(CSME) <12.0.45 | ||
| Intel Intel Converged Security and Management Engine(CSME) <13.0.10 | ||
| Intel Intel Converged Security and Management Engine(CSME) <14.0.10 | ||
| Intel Intel Converged Security and Management Engine(CSME) <11.8.70 | ||
| Intel Intel TXE <4.0.20 | ||
| Intel Intel TXE <3.1.70 | ||
| Intel Intel Converged Security and Management Engine(CSME) <11.22.70 | ||
| Intel Intel Converged Security and Management Engine(CSME) <11.11.70 |
Timeline
- Dec 6, 2019 CVE ID Reserved
- Mar 22, 2020 CVE Published