CVE-2017-5707 Information
Feb 14, 2021
cve
Description
Multiple buffer overflows in kernel in Intel Trusted Execution Engine Firmware 3.0 allow attacker with local access to the system to execute arbitrary code.
CVSS Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Reference
http://www.securityfocus.com/bid/101919 https://cert-portal.siemens.com/productcert/pdf/ssa-892715.pdf https://security.netapp.com/advisory/ntap-20171120-0001/ https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00086&languageid=en-fr https://twitter.com/PTsecurity_UK/status/938447926128291842 https://www.asus.com/News/wzeltG5CjYaIwGJ0 https://www.synology.com/support/security/Synology_SA_17_73
Attack Complexity
LOW
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
HIGH
Base Severity
7.8
Share on: