CVE-2018-12173: High severity intel s2600bp firmware vulnerability
Insufficient access protection in firmware in Intel Server Board, Intel Server System and Intel Compute Module before firmware version 00.01.0014 may allow an unauthenticated attacker to potentially execute arbitrary code resulting in information disclosure, escalation of privilege and/or denial of service via local access.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-12173?
CVE-2018-12173 is a vulnerability in the firmware of Intel Server Board, Intel Server System, and Intel Compute Module that may allow an unauthenticated attacker to execute arbitrary code, leading to information disclosure, privilege escalation, and denial of service.
How does CVE-2018-12173 affect Intel Server Board S2600bp firmware?
CVE-2018-12173 affects Intel Server Board S2600bp firmware versions up to exclusive version 00.01.0014, potentially allowing an unauthenticated attacker to execute arbitrary code and gain unauthorized access.
How can I fix CVE-2018-12173 on Intel Server Board S2600bp firmware?
To fix CVE-2018-12173 on Intel Server Board S2600bp firmware, update to firmware version 00.01.0014 or newer.
What is the severity of CVE-2018-12173?
CVE-2018-12173 has a severity rating of 7.6, which is considered high.
Where can I find more information about CVE-2018-12173?
You can find more information about CVE-2018-12173 on the official Intel Security Center Advisory page and the Lenovo Solutions page.