CVE-2019-0093

Insufficient data sanitization vulnerability in HECI subsystem for Intel(R) CSME before versions 11.8.65, 11.11.65, 11.22.65, 12.0.35 and Intel(R) SPS before version SPS_E3_05.00.04.027.0 may allow a privileged user to potentially enable information disclosure via local access.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:intel:converged_security_and_management_engine:*:*:*:*:*:*:*:*
cpe:2.3:a:intel:converged_security_and_management_engine:*:*:*:*:*:*:*:*
cpe:2.3:a:intel:converged_security_and_management_engine:*:*:*:*:*:*:*:*
cpe:2.3:a:intel:converged_security_and_management_engine:*:*:*:*:*:*:*:*

History

21 Nov 2024, 04:16

Type Values Removed Values Added
References () https://support.f5.com/csp/article/K13710800 - () https://support.f5.com/csp/article/K13710800 -
References () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00213.html - Vendor Advisory () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00213.html - Vendor Advisory

Information

Published : 2019-05-17 16:29

Updated : 2024-11-21 04:16


NVD link : CVE-2019-0093

Mitre link : CVE-2019-0093

CVE.ORG link : CVE-2019-0093


JSON object : View

Products Affected

intel

  • converged_security_and_management_engine