CVE-2019-11106: Medium severity intel converged security and management engine vulnerability
Insufficient session validation in the subsystem for Intel(R) CSME before versions 11.8.70, 12.0.45, 13.0.10 and 14.0.10; Intel(R) TXE before versions 3.1.70 and 4.0.20 may allow a privileged user to potentially enable escalation of privilege via local access.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-11106?
CVE-2019-11106 is a vulnerability in the Intel Converged Security Management Engine (CSME) and Trusted Execution Engine (TXE) firmware versions before 11.8.70, 12.0.45, 13.0.10, 14.0.10, 3.1.70, and 4.0.20.
What is the severity of CVE-2019-11106?
The severity of CVE-2019-11106 is medium, with a severity value of 6.7.
How does CVE-2019-11106 impact Intel CSME?
CVE-2019-11106 can allow a privileged user to potentially enable escalation of privilege via local access to the Intel CSME subsystem.
How does CVE-2019-11106 impact Intel TXE?
CVE-2019-11106 can allow a privileged user to potentially enable escalation of privilege via local access to the Intel Trusted Execution Engine (TXE) firmware.
Where can I find more information about CVE-2019-11106?
You can find more information about CVE-2019-11106 at the following reference: [Intel SA-00241](https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00241.html)