PT-2019-5578 · Intel · Intel Dynamic Platform/Thermal Framework

Enjoi

+1

·

Published

2019-12-10

·

Updated

2019-12-23

·

CVE-2019-0134

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Intel(R) Dynamic Platform and Thermal Framework version 8.3.10208.5643 and before
Description The issue is related to improper permissions in the software, which may allow an authenticated user to execute code at an elevated level of privilege. This is due to errors in using standard permissions. Exploitation of the issue could allow an attacker to execute arbitrary code.
Recommendations For Intel(R) Dynamic Platform and Thermal Framework version 8.3.10208.5643 and before, update to a version later than 8.3.10208.5643 to resolve the issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Incorrect Default Permissions

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-04396
CVE-2019-0134

Affected Products

Intel Dynamic Platform/Thermal Framework