Intel BIOS Version Reversion Local Privilege Escalation Vulnerability
BID:36720
Info
Intel BIOS Version Reversion Local Privilege Escalation Vulnerability
| Bugtraq ID: | 36720 |
| Class: | Design Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Oct 16 2009 12:00AM |
| Updated: | Oct 17 2009 12:18AM |
| Credit: | Alexander Tereshkin, Rafal Wojtczuk, and Joanna Rutkowska from Invisible Things Lab |
| Vulnerable: |
Intel DX58SO 0 Intel DX48BT2 0 Intel DX38BT 0 Intel DQ45EK 0 Intel DQ45CB 0 Intel DQ43AP 0 Intel DQ35MP 0 Intel DQ35JO 0 Intel DQ35EC 0 Intel DP45SG 0 Intel DP43TF 0 Intel DP35DP 0 Intel DG45ID 0 Intel DG45FC 0 Intel DG43NB 0 Intel DG41TY 0 Intel DG41RQ 0 Intel DG41MJ 0 Intel DG33TL 0 Intel DG33FB 0 Intel DG33BU 0 Intel DB43LD 0 Intel D945GSEJT 0 Intel D945GCLF2 0 Intel D945GCLF 0 Intel D5400XS 0 |
| Not Vulnerable: |
Intel DX58SO SOX5810J.86A.4196 Intel DX48BT2 BTX3810J.86A.2000 Intel DX38BT BTX3810J.86A.2000 Intel DQ45EK CBQ4510H.86A.0087 Intel DQ45CB CBQ4510H.86A.0087 Intel DQ43AP APQ4310H.86A.0025 Intel DQ35MP JOQ3510J.86A.1108 Intel DQ35JO JOQ3510J.86A.1108 Intel DQ35EC ECG3510M.86A.0117.20 Intel DP45SG SGP4510H.86A.0118 Intel DP43TF NBG4310H.86A.0087 Intel DP35DP DPP3510J.86A.0572 Intel DG45ID IDG4510H.86A.0105 Intel DG45FC IDG4510H.86A.0105 Intel DG43NB NBG4310H.86A.0087 Intel DG41TY TYG4110H.86A.0030 Intel DG41RQ RQG4110H.86A.0011 Intel DG41MJ MJG4110H.86A.0004 Intel DG33TL DPP3510J.86A.0572 Intel DG33FB DPP3510J.86A.0572 Intel DG33BU DPP3510J.86A.0572 Intel DB43LD LDB4310H.86A.0031 Intel D945GSEJT JT94510H.86A.0032 Intel D945GCLF2 LF94510J.86A.0183 Intel D945GCLF LF94510J.86A.0183 Intel D5400XS XS54010J.86A.1338 |
Discussion
Intel BIOS Version Reversion Local Privilege Escalation Vulnerability
Intel BIOS is prone to a privilege-escalation vulnerability.
Successfully exploiting this issue will allow local users to flash vulnerable products to an earlier BIOS version, which may aid in other attacks.
Currently very few technical details are available. We will update this BID as more information emerges.
Intel BIOS is prone to a privilege-escalation vulnerability.
Successfully exploiting this issue will allow local users to flash vulnerable products to an earlier BIOS version, which may aid in other attacks.
Currently very few technical details are available. We will update this BID as more information emerges.
Exploit / POC
Intel BIOS Version Reversion Local Privilege Escalation Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Intel BIOS Version Reversion Local Privilege Escalation Vulnerability
Solution:
Intel has released fixes. Please see the references for details.
Solution:
Intel has released fixes. Please see the references for details.
References
Intel BIOS Version Reversion Local Privilege Escalation Vulnerability
References:
References: