CVE-2018-6686: Drive Encryption (MDE) - Authentication Bypass vulnerability
Published Jul 27, 2018
·Updated
Authentication Bypass vulnerability in TPM autoboot in McAfee Drive Encryption (MDE) 7.1.0 and above allows physically proximate attackers to bypass local security protection via specific set of circumstances.
Affected Software
1 affected component
Mcafee Drive Encryption>=7.1.0
Event History
Jul 27, 2018
CVE Published
via MITRE·01:00 PM
Data Sourced
via MITRE·01:00 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this authentication bypass vulnerability?
The vulnerability ID for this authentication bypass vulnerability is CVE-2018-6686.
2
What is the affected software for this vulnerability?
The affected software for this vulnerability is McAfee Drive Encryption (MDE) 7.1.0 and above.
3
How does this vulnerability impact security?
This vulnerability allows physically proximate attackers to bypass local security protection under specific circumstances.
4
What is the severity level of CVE-2018-6686?
The severity level of CVE-2018-6686 is high.
5
How can I fix this authentication bypass vulnerability in McAfee Drive Encryption?
Please refer to the official McAfee advisory at the provided reference link for instructions on how to fix this vulnerability.