Ó¢ÌØ¶ûCSMEÎó²îÇ徲ͨ¸æ

Ðû²¼Ê±¼ä 2018-09-12

Îó²î±àºÅºÍ¼¶±ð


CVE±àºÅ£ºCVE-2018-3655£¬£¬ £¬£¬£¬£¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬£¬ £¬£¬£¬£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ7.3£¬£¬ £¬£¬£¬£¬¹Ù·½Î´ÆÀ¶¨


Ó°Ïì°æ±¾


Îó²îÓ°ÏìÓ¢ÌØ¶ûCSME¹Ì¼þ°æ±¾£º11.0ÖÁ11.8.50£¬£¬ £¬£¬£¬£¬ 11.10ÖÁ11.11.50£¬£¬ £¬£¬£¬£¬ 11.20ÖÁ11.21.51¡£¡£¡£¡£¡£
Ó¢ÌØ¶ûЧÀÍÆ÷ƽ̨ЧÀ͹̼þ°æ±¾£º4.0£¨½öÏÞPurleyºÍBakerville£©¡£¡£¡£¡£¡£

Ó¢ÌØ¶ûTXE°æ±¾£º3.0µ½3.1.50¡£¡£¡£¡£¡£


Îó²î¸ÅÊö


Îó²î±£´æÓÚ11.21.55°æ±¾Ö®Ç°µÄÓ¢ÌØ¶ûCSMEÖеÄ×Óϵͳ£¬£¬ £¬£¬£¬£¬4.0°æ±¾Ö®Ç°µÄÓ¢ÌØ¶ûЧÀÍÆ÷ƽ̨ЧÀͺÍ3.1.55°æ±¾Ö®Ç°µÄÓ¢ÌØ¶û¿ÉÐÅÖ´ÐÐÒýÇæ¹Ì¼þÖУ¬£¬ £¬£¬£¬£¬¿ÉÄÜÔÊÐíδ¾­Éí·ÝÑéÖ¤µÄÓû§Í¨¹ýÎïÆÊÎö¼ûÀ´Ð޸Ļò×ß©ÐÅÏ¢¡£¡£¡£¡£¡£


¾ßÓÐÎïÆÊÎö¼ûȨÏÞµÄδ¾­Éí·ÝÑéÖ¤µÄÓû§¿ÉÒÔ£ºÈƹýÓ¢ÌØ¶ûCSME ·´Öطű£»£»£»£»¤£¬£¬ £¬£¬£¬£¬¿ÉÄÜÔÊÐí±©Á¦¹¥»÷À´»ñÈ¡´æ´¢ÔÚÓ¢ÌØ¶ûCSMEÄÚµÄÐÅÏ¢¡£¡£¡£¡£¡£»£»£»£»ñµÃδ¾­ÊÚȨ»á¼ûÓ¢ÌØ¶ûMEBXµÄÃÜÂë¡£¡£¡£¡£¡£¸Ä¶¯Ó¢ÌضûCSMEÎļþϵͳĿ¼µÄÍêÕûÐÔ»òЧÀÍÆ÷ƽ̨ЧÀͺͿÉÐÅÖ´ÐÐÇéÐΣ¨Ó¢ÌضûTXT£©Êý¾ÝÎļþ¡£¡£¡£¡£¡£


Îó²îÑéÖ¤


ÔÝÎÞPOC\EXP


ÐÞ¸´½¨Òé


ÇëÓ¢ÌØ¶ûCSME£¬£¬ £¬£¬£¬£¬Ó¢ÌضûЧÀÍÆ÷ƽ̨ЧÀͺÍÓ¢ÌØ¶û¿ÉÐÅÖ´ÐÐÒýÇæ£¨TXE£©µÄÓû§¸üÐÂ×îв¹¶¡¡£¡£¡£¡£¡£


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾



²Î¿¼Á´½Ó


https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00125.html
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00086.html