CVE-2018-3632Out-of-bounds Write in Intel Active Management Technology Firmware

Severity
6.7MEDIUMNVD
EPSS
0.1%
top 77.24%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 10
Latest updateMay 13

Description

Memory corruption in Intel Active Management Technology in Intel Converged Security Manageability Engine Firmware 6.x / 7.x / 8.x / 9.x / 10.x / 11.0 / 11.5 / 11.6 / 11.7 / 11.10 / 11.20 could be triggered by an attacker with local administrator permission on the system.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:HExploitability: 0.8 | Impact: 5.9

Affected Packages2 packages

CVEListV5intel_corporation/intel_active_management_technology3.x,4.x,5.x,6.x,7.x,8.x,9.x,10.x,11.x

🔴Vulnerability Details

2
GHSA
GHSA-548h-h67q-4q36: Memory corruption in Intel Active Management Technology in Intel Converged Security Manageability Engine Firmware 62022-05-13
CVEList
CVE-2018-3632: Memory corruption in Intel Active Management Technology in Intel Converged Security Manageability Engine Firmware 62018-07-10
CVE-2018-3632 — Out-of-bounds Write in Intel | cvebase