Permissions in the driver pack installers for Intel NVMe before version 4.0.0.1007 and Intel RSTe before version 4.7.0.2083 may allow an authenticated user to potentially escalate privilege via local access.
References
Link | Resource |
---|---|
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00154.html | Patch Vendor Advisory |
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00154.html | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 03:44
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00154.html - Patch, Vendor Advisory |
Information
Published : 2018-10-10 14:29
Updated : 2024-11-21 03:44
NVD link : CVE-2018-12131
Mitre link : CVE-2018-12131
CVE.ORG link : CVE-2018-12131
JSON object : View
Products Affected
intel
- rapid_storage_technology
- client_nvme
- datacenter_nvme
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource