Intel's Wi-Fi, SSD, NUC and other vulnerability reports including serious security risk such as information leakage and privilege escalation



On January 9, 2019 Intel issued a report on the potential security risks that existed in the company's product and released a vulnerability countermeasure program. The target product covers a wide range of fields such as network, SSD, NUC.

JVNVU # 92720005: Multiple vulnerabilities in Intel products
https://jvn.jp/vu/JVNVU92720005/



◆ NUC: INTEL-SA-00144
Impact of vulnerability: privilege escalation
Seriousness: Medium
Applicable product list
Intel NUC Kit NUC7CJYH
Intel NUC Kit NUC 8i 7 HNK
Intel Compute Card CD 1 M 3128 MK
Intel Compute Card CD 1 IV 128 MK
Intel Compute Card CD 1 P 64 GK
Intel NUC Kit NUC 7i 7 DNKE
Intel NUC Kit NUC 7i 5 DNKE
Intel NUC Kit NUC 7i 3 DNHE
Intel NUC Kit NUC 7i 7 BNH
Intel NUC Kit NUC6CAYS
Intel NUC Kit DE 3815 TYBE
Intel NUC Kit NUC6i5SYH
Intel NUC Kit NUC 6i 7 KYK
Intel NUC Kit NUC 5 PGYH
Intel NUC Kit NUC 5CPYH
Intel NUC Kit NUC 5i 7 RYH
Intel NUC Kit NUC 5i 5 MYHE
Intel NUC Kit NUC 5i 3 MYHE
Intel NUC Kit DE 3815 TYBE
Intel NUC Kit DN 2820 FYKH
Intel NUC Kit D54250 WYB
Intel NUC Kit D53427 RKE
Intel NUC Kit D33217GKE
Intel Compute Stick STK 2 mv 64 C
Intel Compute Stick STK 2 m 3 W 64 C
Intel Compute Stick STK 1 AW 32 SC
Intel Compute Stick STCK 1 A 32 WFC

◆ Optane SSD: INTEL-SA-00175
Impact of vulnerability: Denial of Service (DoS)
Seriousness: Medium
Applicable product list
Intel Optane ™ SSD DC P4800X before version E2010435.

◆ WiFi: INTEL-SA-00182
Impact of vulnerability: privilege escalation
Seriousness: high
Applicable product list
Intel Dual Band Wireless-AC 3160
Intel Dual Band Wireless - AC 7260
Intel Dual Band Wireless-N 7260
Intel Wireless-N 7260
Intel Dual Band Wireless - AC 7260 for Desktop
Intel Dual Band Wireless - AC 7265 (Rev. C)
Intel Dual Band Wireless-N 7265 (Rev. C)
Intel Wireless-N 7265 (Rev. C)
Intel Dual Band Wireless-AC 3165
Intel Dual Band Wireless - AC 7265 (Rev. D)
Intel Dual Band Wireless-N 7265 (Rev. D)
Intel Wireless-N 7265 (Rev. D)
Intel Dual Band Wireless-AC 3168
Intel Tri-Band Wireless-AC 17265
Intel Dual Band Wireless-AC 8260
Intel Tri-Band Wireless-AC 18260
Intel Dual Band Wireless-AC 8265
Intel Dual Band Wireless - AC 8265 Desktop Kit
Intel Tri-Band Wireless-AC 18265
Intel Wireless-AC 9560
Intel Wireless-AC 9461
Intel Wireless-AC 9462
Intel Wireless-AC 9260

◆ Intel SGX: INTEL-SA-00203
Influence of vulnerability: privilege elevation, information leakage
Seriousness: high
Applicable product list
Intel SGX SDK for Windows before 2.2.100
Intel SGX SDK for Linux before 2.4.100
Intel SGX Platform Software for Windows before version 2.2.100
Intel SGX Platform Software for Linux before version 2.4.100

◆ SSD Data Center Tool: INTEL-SA-00207
Impact of vulnerability: privilege escalation
Seriousness: Medium
Applicable product list
Intel SSD Data Center Tool for Windows before v3.0.17.

◆ System Support Utility: INTEL-SA-00212
Impact of vulnerability: privilege escalation
Seriousness: high
Applicable product list
Intel System Support Utility for Windows before 2.5.0.15.

in Software,   Hardware,   Security, Posted by darkhorse_log