First published: Fri May 17 2019(Updated: )
Insufficient input validation vulnerability in subsystem for Intel(R) AMT before versions 11.8.65, 11.11.65, 11.22.65, 12.0.35 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Active Management Technology Firmware | >=11.8.0<11.8.65 | |
Intel Active Management Technology Firmware | >=11.11.0<11.11.65 | |
Intel Active Management Technology Firmware | >=11.22.0<11.22.65 | |
Intel Active Management Technology Firmware | >=12.0<12.0.35 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-0092 is an insufficient input validation vulnerability in the subsystem for Intel(R) AMT before versions 11.8.65, 11.11.65, 11.22.65, and 12.0.35.
The severity of CVE-2019-0092 is medium with a CVSS score of 6.8.
CVE-2019-0092 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
Intel Active Management Technology Firmware versions 11.8.0 to 11.8.65, 11.11.0 to 11.11.65, 11.22.0 to 11.22.65, and 12.0 to 12.0.35 are affected by CVE-2019-0092.
To fix CVE-2019-0092, it is recommended to update the Intel Active Management Technology Firmware to versions 11.8.65, 11.11.65, 11.22.65, or 12.0.35.