CVE-2017-5685: Low severity Intel Nuc6i7kyk Bios vulnerability
Published Apr 3, 2017
·Updated
The BIOS in Intel NUC systems based on 6th Gen Intel Core processors prior to version KY0045 may allow may allow an attacker with physical access to the system to gain access to personal information.
Affected Software
4 affected components
Intel Nuc6i7kyk Bios=kyskli70.86a.0042.2016.0929.1933
Intel Nuc6i7kyk
All of the following
Intel Nuc6i7kyk Bios=kyskli70.86a.0042.2016.0929.1933
Intel Nuc6i7kyk
Event History
Apr 3, 2017
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
DescriptionWeakness
Data Sourced
via NVD·09:59 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2017-5685?
CVE-2017-5685 is classified as a medium severity vulnerability due to the physical access required for exploitation.
2
How do I fix CVE-2017-5685?
To remediate CVE-2017-5685, update the BIOS of the affected Intel NUC systems to version KY0045 or later.
3
Who is affected by CVE-2017-5685?
CVE-2017-5685 affects Intel NUC systems based on 6th Gen Intel Core processors with BIOS versions prior to KY0045.
4
What type of attack is possible with CVE-2017-5685?
CVE-2017-5685 allows an attacker with physical access to potentially access personal information on the system.
5
Is CVE-2017-5685 a remote attack vector?
CVE-2017-5685 is not a remote attack vector as it requires physical access to the affected device.