Insufficient Write Protection in Intel Optane SSDs
CVE-2018-12166

4.4MEDIUM

Key Information:

Vendor
Intel
Vendor
CVE Published:
10 January 2019

Summary

The firmware of Intel Optane SSD DC P4800X prior to version E2010435 contains an insufficient write protection flaw. This vulnerability allows a privileged user to potentially exploit the system, leading to a denial of service condition through local access. Users of affected Intel Optane SSDs should ensure their firmware is updated to the latest version to mitigate potential risks.

Affected Version(s)

Intel(R) Optane(TM) SSD DC P4800X before version E2010435.

References

CVSS V3.1

Score:
4.4
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.