CVE-2018-3632 — Out-of-bounds Write in Intel Active Management Technology Firmware
Severity
6.7MEDIUMNVD
EPSS
0.1%
top 77.24%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 10
Latest updateMay 13
Description
Memory corruption in Intel Active Management Technology in Intel Converged Security Manageability Engine Firmware 6.x / 7.x / 8.x / 9.x / 10.x / 11.0 / 11.5 / 11.6 / 11.7 / 11.10 / 11.20 could be triggered by an attacker with local administrator permission on the system.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:HExploitability: 0.8 | Impact: 5.9
Affected Packages2 packages
🔴Vulnerability Details
2GHSA▶
GHSA-548h-h67q-4q36: Memory corruption in Intel Active Management Technology in Intel Converged Security Manageability Engine Firmware 6↗2022-05-13
CVEList▶
CVE-2018-3632: Memory corruption in Intel Active Management Technology in Intel Converged Security Manageability Engine Firmware 6↗2018-07-10