CVE-2017-5689: Intel Active Management Technology (AMT), Small Business Technology (SBT), and Standard Manageability Privilege Escalation Vulnerability
An unprivileged network attacker could gain system privileges to provisioned Intel manageability SKUs: Intel Active Management Technology (AMT) and Intel Standard Manageability (ISM). An unprivileged local attacker could provision manageability features gaining unprivileged network or local system privileges on Intel manageability SKUs: Intel Active Management Technology (AMT), Intel Standard Manageability (ISM), and Intel Small Business Technology (SBT).
Other sources
Intel products contain a vulnerability which can allow attackers to perform privilege escalation.
— CISA
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-5689?
CVE-2017-5689 is rated as critical due to its potential to allow an unprivileged network attacker to gain elevated privileges.
How do I fix CVE-2017-5689?
To remediate CVE-2017-5689, it is recommended to update to the latest firmware version of Intel Active Management Technology.
What products are affected by CVE-2017-5689?
CVE-2017-5689 affects several versions of Intel Active Management Technology Firmware, including versions 6.0 to 11.6.
What type of attacker can exploit CVE-2017-5689?
CVE-2017-5689 can be exploited by both unprivileged network and local attackers.
Are there any workarounds for CVE-2017-5689?
Currently, the primary mitigation for CVE-2017-5689 is to apply the available firmware updates from Intel.