Intel ½¨¸´NUC¹Ì¼þ¶à¸ö·ì϶°²È«¹«¸æ

°ä²¼¹¦·ò 2019-08-15

? ·ì϶±àºÅºÍ¼¶±ð


CVE±àºÅ£ºCVE-2019-11140 £¬Î£ÏÕ¼¶±ð£º¸ßΣ £¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º7.5 £¬¹Ù·½Î´ÆÀ¶¨
CVE±àºÅ£ºCVE-2019-11163 £¬Î£ÏÕ¼¶±ð£º¸ßΣ £¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º8.2 £¬¹Ù·½Î´ÆÀ¶¨
CVE±àºÅ£ºCVE-2019-11162 £¬Î£ÏÕ¼¶±ð£º¸ßΣ £¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º8.2 £¬¹Ù·½Î´ÆÀ¶¨
CVE±àºÅ£ºCVE-2019-0173 £¬Î£ÏÕ¼¶±ð£ºÖÐΣ £¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º6.8 £¬¹Ù·½Î´ÆÀ¶¨
CVE±àºÅ£ºCVE-2019-11143 £¬Î£ÏÕ¼¶±ð£ºÖÐΣ £¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º6.3 £¬¹Ù·½Î´ÆÀ¶¨
CVE±àºÅ£ºCVE-2019-11145 £¬Î£ÏÕ¼¶±ð£ºÖÐΣ £¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º6.7 £¬¹Ù·½Î´ÆÀ¶¨
CVE±àºÅ£ºCVE-2019-11148 £¬Î£ÏÕ¼¶±ð£ºÖÐΣ £¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º6.7 £¬¹Ù·½Î´ÆÀ¶¨


Ó°Ïì°æ±¾


ÊÜÓ°ÏìµÄ°æ±¾


CVE-2019-11140


Affected Product

Updated Firmware

Intel? NUC Kit NUC7i7DNx

BIOS version 0066 or later

Intel? NUC Kit NUC7i5DNx

BIOS version 0066 or later

Intel? NUC Kit NUC7i3DNx

BIOS version 0066 or later

Intel? Compute Stick STK2MV64CC

BIOS version 0060 or later

Intel? Compute Card CD1IV128MK

BIOS version 0037 or later


CVE-2019-11163

Intel? Processor Identification Utility for Windows* before version 6.1.0731.


CVE-2019-11162

Intel? Computing Improvement Program before version 2.4.0.04733.


CVE-2019-0173

Intel(R) RAID Web Console 2 all versions.


CVE-2019-11143

Intel? Authenticate before version 3.8.


CVE-2019-11145

Intel? Driver & Support Assistant before 19.7.30.2.


CVE-2019-11148

Intel? Remote Displays SDK before version 2.0.1 R2.


·ì϶¸ÅÊö


Intel NUC kitsÊÇÃÀ¹úÓ¢ÌØ¶û£¨Intel£©¹«Ë¾µÄÒ»¿îÃÔÄãÐĮ́ʽ»ú¡£Intel RAID Web Console for WindowsÊÇÃÀ¹úÓ¢ÌØ¶û£¨Intel£©¹«Ë¾µÄÒ»¿î»ùÓÚWindowsƽ̨µÄRAID£¨¶ÀÁ¢ÈßÓà´ÅÅÌÕóÁУ©ÖÎÀí½ÚÔį̀·¨Ê½¡£


Ó¢ÌØ¶û½¨¸´ÁËÈçϸßΣ·ì϶£º


CVE-2019-11140

Intel£¨R£©NUCµÄϵͳ¹Ì¼þÖеĻỰÑéÖ¤²»¼°¿ÉÄÜÔÊÐíÌØÈ¨Óû§Í¨¹ý±¾µØ½Ó¼ûʵÏÖÌØÈ¨Éý¼¶ £¬»Ø¾ø·þÎñºÍ/»òÐÅϢй¶¡£


CVE-2019-11163

°æ±¾6.1.0731֮ǰµÄºÏÓÃÓÚWindowsµÄIntel£¨R£©´¦ÖÃÆ÷¼ø±ðʵÓ÷¨Ê½µÄÓ²¼þ³éÏóÇý¶¯·¨Ê½ÖеĽӼû½ÚÔì²»¼°¿ÉÄÜÔÊÐí¾­¹ýÉí·ÝÑéÖ¤µÄÓû§Í¨¹ý±¾µØ½Ó¼ûÀ´Éý¼¶È¨ÏÞ £¬»Ø¾ø·þÎñ»òÐÅϢй¶¡£


CVE-2019-11162

ÔÚ°æ±¾2.4.0.04733֮ǰµÄIntel£¨R£©ÍÆËã¸Ä½ø´òËãµÄSEMAÇý¶¯·¨Ê½ÖÐ £¬Ó²¼þ³éÏóÖеĽӼû½ÚÔì²»¼°¿ÉÄÜÔÊÐí¾­¹ýÉí·ÝÑéÖ¤µÄÓû§Í¨¹ý±¾µØ½Ó¼ûʵÏÖȨÏÞÉý¼¶ £¬»Ø¾ø·þÎñ»òÐÅϢй¶¡£


CVE-2019-0173

Intel£¨R£©Raid Web Console 2µÄWeb½ÚÔį̀ÖеÄÉí·ÝÑéÖ¤ÈÆ¹ýËùÓа汾¿ÉÄÜÔÊÐíδ¾­Éí·ÝÑéÖ¤µÄ¹¥»÷Õßͨ¹ýÍøÂç½Ó¼ûDZÔ򵯮ôÓÃÐÅϢй¶¡£


CVE-2019-11143

Intel£¨R£©Éí·ÝÑéÖ¤µÄÈí¼þ×°Ö÷¨Ê½ÖеIJ»ÕýȷȨÏÞ¿ÉÄÜÔÊÐí¾­¹ýÉí·ÝÑéÖ¤µÄÓû§Í¨¹ý±¾µØ½Ó¼ûÀ´ÆôÓÃȨÏÞÉý¼¶¡£


CVE-2019-11145

19.7.30.2֮ǰIntel£¨R£©Çý¶¯·¨Ê½ºÍÖ§³Ö¸±ÊֵIJ»ÕýȷĿ¼ȨÏÞ¿ÉÄÜÔÊÐí¾­¹ýÉí·ÝÑéÖ¤µÄÓû§Í¨¹ý±¾µØ½Ó¼ûÆôÓÃȨÏÞÉý¼¶¡£


CVE-2019-11148

ÔÚ°æ±¾2.0.1 R2֮ǰ £¬Intel£¨R£©Ô¶³ÌÏÔʾSDKµÄ×°Ö÷¨Ê½ÖеIJ»ÕýȷȨÏÞ¿ÉÄÜÔÊÐí¾­¹ýÉí·ÝÑéÖ¤µÄÓû§Í¨¹ý±¾µØ½Ó¼ûÀ´ÆôÓÃȨÏÞÉý¼¶¡£


·ì϶ÑéÖ¤


ÔÝÎÞPOC/EXP¡£


½¨¸´½¨Òé


Ŀǰ³§ÉÌÒѰ䲼Éý¼¶²¹¶¡ÒÔ½¨¸´·ì϶ £¬²¹¶¡»ñÈ¡Á´½Ó£º


https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00272.html
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00281.html
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00283.html
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00246.html
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00275.html
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00276.html
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00277.html


²Î¿¼Á´½Ó


https://www.bleepingcomputer.com/news/security/intel-updates-nuc-firmware-to-patch-high-severity-bug/