CVE Vulnerabilities

CVE-2017-5704

Insufficiently Protected Credentials

Published: Jul 10, 2018 | Modified: Nov 21, 2024
CVSS 3.x
6.7
MEDIUM
Source:
NVD
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Platform sample code firmware included with 4th Gen Intel Core Processor, 5th Gen Intel Core Processor, 6th Gen Intel Core Processor, and 7th Gen Intel Core Processor potentially exposes password information in memory to a local attacker with administrative privileges.

Weakness

The product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.

Affected Software

NameVendorStart VersionEnd Version
Core_i3Intel4000m (including)4000m (including)
Core_i3Intel4005u (including)4005u (including)
Core_i3Intel4010u (including)4010u (including)
Core_i3Intel4010y (including)4010y (including)
Core_i3Intel4012y (including)4012y (including)
Core_i3Intel4020y (including)4020y (including)
Core_i3Intel4025u (including)4025u (including)
Core_i3Intel4030u (including)4030u (including)
Core_i3Intel4030y (including)4030y (including)
Core_i3Intel4100e (including)4100e (including)
Core_i3Intel4100m (including)4100m (including)
Core_i3Intel4100u (including)4100u (including)
Core_i3Intel4102e (including)4102e (including)
Core_i3Intel4110e (including)4110e (including)
Core_i3Intel4110m (including)4110m (including)
Core_i3Intel4112e (including)4112e (including)
Core_i3Intel4120u (including)4120u (including)
Core_i3Intel4130 (including)4130 (including)
Core_i3Intel4130t (including)4130t (including)
Core_i3Intel4150 (including)4150 (including)
Core_i3Intel4150t (including)4150t (including)
Core_i3Intel4158u (including)4158u (including)
Core_i3Intel4160 (including)4160 (including)
Core_i3Intel4160t (including)4160t (including)
Core_i3Intel4170 (including)4170 (including)
Core_i3Intel4170t (including)4170t (including)
Core_i3Intel4330 (including)4330 (including)
Core_i3Intel4330t (including)4330t (including)
Core_i3Intel4330te (including)4330te (including)
Core_i3Intel4340 (including)4340 (including)
Core_i3Intel4340te (including)4340te (including)
Core_i3Intel4350 (including)4350 (including)
Core_i3Intel4350t (including)4350t (including)
Core_i3Intel4360 (including)4360 (including)
Core_i3Intel4360t (including)4360t (including)
Core_i3Intel4370 (including)4370 (including)
Core_i3Intel4370t (including)4370t (including)
Core_i3Intel5005u (including)5005u (including)
Core_i3Intel5010u (including)5010u (including)
Core_i3Intel5015u (including)5015u (including)
Core_i3Intel5020u (including)5020u (including)
Core_i3Intel5157u (including)5157u (including)
Core_i3Intel6006u (including)6006u (including)
Core_i3Intel6098p (including)6098p (including)
Core_i3Intel6100 (including)6100 (including)
Core_i3Intel6100e (including)6100e (including)
Core_i3Intel6100h (including)6100h (including)
Core_i3Intel6100t (including)6100t (including)
Core_i3Intel6100te (including)6100te (including)
Core_i3Intel6100u (including)6100u (including)
Core_i3Intel6102e (including)6102e (including)
Core_i3Intel6157u (including)6157u (including)
Core_i3Intel6167u (including)6167u (including)
Core_i3Intel6300 (including)6300 (including)
Core_i3Intel6300t (including)6300t (including)
Core_i3Intel6320 (including)6320 (including)
Core_i3Intel7020u (including)7020u (including)
Core_i3Intel7100 (including)7100 (including)
Core_i3Intel7100e (including)7100e (including)
Core_i3Intel7100h (including)7100h (including)
Core_i3Intel7100t (including)7100t (including)
Core_i3Intel7100u (including)7100u (including)
Core_i3Intel7101e (including)7101e (including)
Core_i3Intel7101te (including)7101te (including)
Core_i3Intel7102e (including)7102e (including)
Core_i3Intel7130u (including)7130u (including)
Core_i3Intel7167u (including)7167u (including)
Core_i3Intel7300 (including)7300 (including)
Core_i3Intel7300t (including)7300t (including)
Core_i3Intel7320 (including)7320 (including)
Core_i3Intel7350k (including)7350k (including)

Potential Mitigations

References