7.6
CWE
200
Advisory Published
Updated

CVE-2018-3652: Infoleak

First published: Tue Jul 10 2018(Updated: )

Existing UEFI setting restrictions for DCI (Direct Connect Interface) in 5th and 6th generation Intel Xeon Processor E3 Family, Intel Xeon Scalable processors, and Intel Xeon Processor D Family allows a limited physical presence attacker to potentially access platform secrets via debug interfaces.

Credit: secure@intel.com

Affected SoftwareAffected VersionHow to fix
Intel Xeon E3=1505m_v6
Intel Xeon E3=1515m_v5
Intel Xeon E3=1535m_v5
Intel Xeon E3=1535m_v6
Intel Xeon E3=1545m_v5
Intel Xeon E3=1558l_v5
Intel Xeon E3=1565l_v5
Intel Xeon E3=1575m_v5
Intel Xeon E3=1578l_v5
Intel Xeon E3=1585_v5
Intel Xeon E3=1585l_v5
Intel Xeon E3 1220 V5
Intel Xeon E3 1220 V6
Intel Xeon E3 1225 V5
Intel Xeon E3 1225 V6
Intel Xeon E3 1230 V5
Intel Xeon E3 1230 V6
Intel Xeon E3 1235l V5
Intel Xeon E3 1240 V5
Intel Xeon E3 1240 V6
Intel Xeon E3 1240l V5
Intel Xeon E3 1245 V5
Intel Xeon E3 1245 V6
Intel Xeon E3 1260l V5
Intel Xeon E3 1268l V5
Intel Xeon E3 1270 V5
Intel Xeon E3 1270 V6
Intel Xeon E3 1275 V5
Intel Xeon E3 1275 V6
Intel Xeon E3 1280 V5
Intel Xeon E3 1280 V6
Intel Xeon E3 1285 V6
Intel Xeon E3 1501l V6
Intel Xeon E3 1501m V6
Intel Xeon E3 1505l V5
Intel Xeon E3 1505l V6
Intel Xeon E3 1505m V5
Intel Xeon Bronze 3104
Intel Xeon Bronze 3106
Intel Xeon Gold=5115
Intel Xeon Gold=5118
Intel Xeon Gold=5119t
Intel Xeon Gold=5120
Intel Xeon Gold=5120t
Intel Xeon Gold=5122
Intel Xeon Gold=6126
Intel Xeon Gold=6126f
Intel Xeon Gold=6126t
Intel Xeon Gold=6128
Intel Xeon Gold=6130
Intel Xeon Gold=6130f
Intel Xeon Gold=6130t
Intel Xeon Gold=6132
Intel Xeon Gold=6134
Intel Xeon Gold=6134m
Intel Xeon Gold=6136
Intel Xeon Gold=6138
Intel Xeon Gold=6138f
Intel Xeon Gold=6138p
Intel Xeon Gold=6138t
Intel Xeon Gold=6140
Intel Xeon Gold=6140m
Intel Xeon Gold=6142
Intel Xeon Gold=6142f
Intel Xeon Gold=6142m
Intel Xeon Gold=6144
Intel Xeon Gold=6146
Intel Xeon Gold=6148
Intel Xeon Gold=6148f
Intel Xeon Gold=6150
Intel Xeon Gold=6152
Intel Xeon Gold=6154
Intel Xeon Platinum=8153
Intel Xeon Platinum=8156
Intel Xeon Platinum=8158
Intel Xeon Platinum=8160
Intel Xeon Platinum=8160f
Intel Xeon Platinum=8160m
Intel Xeon Platinum=8160t
Intel Xeon Platinum=8164
Intel Xeon Platinum=8168
Intel Xeon Platinum=8170
Intel Xeon Platinum=8170m
Intel Xeon Platinum=8176
Intel Xeon Platinum=8176f
Intel Xeon Platinum=8176m
Intel Xeon Platinum=8180
Intel Xeon Platinum=8180m
Intel Xeon Silver=4108
Intel Xeon Silver=4109t
Intel Xeon Silver=4110
Intel Xeon Silver=4112
Intel Xeon Silver=4114
Intel Xeon Silver=4114t
Intel Xeon Silver=4116
Intel Xeon Silver=4116t
Intel Xeon=d-1513n
Intel Xeon=d-1518
Intel Xeon=d-1520
Intel Xeon=d-1521
Intel Xeon=d-1523n
Intel Xeon=d-1527
Intel Xeon=d-1528
Intel Xeon=d-1529
Intel Xeon=d-1531
Intel Xeon=d-1533n
Intel Xeon=d-1537
Intel Xeon=d-1539
Intel Xeon=d-1540
Intel Xeon=d-1541
Intel Xeon=d-1543n
Intel Xeon=d-1548
Intel Xeon=d-1553n
Intel Xeon=d-1557
Intel Xeon=d-1559
Intel Xeon=d-1567
Intel Xeon=d-1571
Intel Xeon=d-1577
Intel Xeon=d-2123it
Intel Xeon=d-2141i
Intel Xeon=d-2142it
Intel Xeon=d-2143it
Intel Xeon=d-2145nt
Intel Xeon=d-2146nt
Intel Xeon=d-2161i
Intel Xeon=d-2163it
Intel Xeon=d-2166nt
Intel Xeon=d-2173it
Intel Xeon=d-2177nt
Intel Xeon=d-2183it
Intel Xeon=d-2187nt
Intel Atom C=c2308
Intel Atom C=c2316
Intel Atom C=c2338
Intel Atom C=c2350
Intel Atom C=c2358
Intel Atom C=c2508
Intel Atom C=c2516
Intel Atom C=c2518
Intel Atom C=c2530
Intel Atom C=c2538
Intel Atom C=c2550
Intel Atom C=c2558
Intel Atom C=c2718
Intel Atom C=c2730
Intel Atom C=c2738
Intel Atom C=c2750
Intel Atom C=c2758
Intel Atom C=c3308
Intel Atom C=c3336
Intel Atom C=c3338
Intel Atom C=c3508
Intel Atom C=c3538
Intel Atom C=c3558
Intel Atom C=c3708
Intel Atom C=c3750
Intel Atom C=c3758
Intel Atom C=c3808
Intel Atom C=c3830
Intel Atom C=c3850
Intel Atom C=c3858
Intel Atom C=c3950
Intel Atom C=c3955
Intel Atom C=c3958

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203