CVE-2018-3689: Medium severity intel software guard extensions vulnerability
AESM daemon in Intel Software Guard Extensions Platform Software Component for Linux before 2.1.102 can effectively be disabled by a local attacker creating a denial of services like remote attestation provided by the AESM.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-3689?
CVE-2018-3689 is considered a high severity vulnerability as it can allow local attackers to disable critical denial of service features.
How do I fix CVE-2018-3689?
To fix CVE-2018-3689, update Intel Software Guard Extensions Platform Software Component for Linux to version 2.1.102 or later.
Who is affected by CVE-2018-3689?
CVE-2018-3689 affects users of Intel Software Guard Extensions on Linux systems that have the vulnerable software version installed.
What does CVE-2018-3689 exploit?
CVE-2018-3689 exploits a flaw in the AESM daemon that can lead to a denial of service for remote attestation.
Is there a workaround for CVE-2018-3689?
As of now, applying the available software updates is the most effective recommended workaround for CVE-2018-3689.