First published: Wed Dec 18 2019(Updated: )
Insufficient input validation in subsystem in Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Active Management Technology Firmware | >=11.0<11.8.70 | |
Intel Active Management Technology Firmware | >=11.10<11.11.70 | |
Intel Active Management Technology Firmware | >=11.20<11.22.70 | |
Intel Active Management Technology Firmware | >=12.0<12.0.45 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-11088 is a vulnerability in Intel Active Management Technology (AMT) firmware before versions 11.8.70, 11.11.70, 11.22.70, and 12.0.45 that allows an unauthenticated user to potentially enable escalation of privilege via adjacent access.
CVE-2019-11088 has a severity score of 8.8 (high).
CVE-2019-11088 affects Intel Active Management Technology (AMT) firmware versions 11.0 to 11.8.70, 11.10 to 11.11.70, 11.20 to 11.22.70, and 12.0 to 12.0.45.
An unauthenticated user can exploit CVE-2019-11088 by gaining adjacent access and potentially enabling escalation of privilege.
You can find more information about CVE-2019-11088 on the Intel Security Center Advisory page: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00241.html