CVE-2017-3718: Medium severity intel nuc kit firmware vulnerability
Published Jan 10, 2019
·Updated
Improper setting of device configuration in system firmware for Intel(R) NUC kits may allow a privileged user to potentially enable escalation of privilege via physical access.
Affected Software
29 affected components
Intel Nuc Kit Firmware
Intel Nuc Kit D33217gke
Intel Nuc Kit D53427rke
Intel Nuc Kit D54250wyb
Intel Nuc Kit De3815tybe
Intel Nuc Kit Dn2820fykh
Intel Nuc Kit Nuc5cpyh
Intel Nuc Kit Nuc5i3myhe
Intel Nuc Kit Nuc5i5myhe
Intel Nuc Kit Nuc5i7ryh
Intel Nuc Kit Nuc5pgyh
Intel Nuc Kit Nuc6cays
Intel Nuc Kit Nuc6i5syh
Intel NUC Kit NUC6i7KYK
Intel Nuc Kit Nuc7cjyh
Intel Nuc Kit Nuc7i3dnhe
Intel Nuc Kit Nuc7i5dnke
Intel Nuc Kit Nuc7i7bnh
Intel Nuc Kit Nuc7i7dnke
Intel Nuc Kit Nuc8i7hnk
Intel Compute Card Firmware
Intel Compute Card Cd1iv128mk
Intel Compute Card Cd1m3128mk
Intel Compute Card Cd1p64gk
Intel Compute Stick Firmware
Intel Compute Stick Stck1a32wfc
Intel Compute Stick Stk1aw32sc
Intel Compute Stick Stk2m3w64cc
Intel Compute Stick Stk2mv64cc
Remediation
Event History
Jan 10, 2019
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2017-3718?
CVE-2017-3718 is a vulnerability that allows a privileged user to potentially enable escalation of privilege via physical access to Intel(R) NUC kits.
2
What software is affected by CVE-2017-3718?
Intel Nuc Kit Firmware is affected by CVE-2017-3718.
3
What is the severity of CVE-2017-3718?
CVE-2017-3718 has a severity rating of 6.2 (medium).
4
How can I fix CVE-2017-3718?
To fix CVE-2017-3718, update the system firmware for Intel NUC kits to the latest version.
5
Where can I find more information about CVE-2017-3718?
You can find more information about CVE-2017-3718 at the Intel Security Center advisory: https://www.intel.com/content/www/us/en/security-center/advisory/INTEL-SA-00144.html