Intel Converged Security and Management Engine
cpe:2.3:a:intel:converged_security_and_management_engine:*:*:*:*:*:*:*, +1 more
A null pointer dereference vulnerability has been identified in the firmware for certain Intel Active Management Technology (AMT) and Intel Standard Manageability products. This vulnerability, present within Ring 0: Kernel, may lead to a denial-of-service condition. A network adversary, without authentication, could exploit this vulnerability through a high complexity attack, potentially causing a denial-of-service via network access. The vulnerability requires no user interaction but does necessitate specific attack conditions. While the vulnerability itself does not impact confidentiality or integrity, it significantly affects system availability, leading to a complete loss of confidentiality, integrity, and availability in the aftermath of the denial-of-service condition.
Exploitation of this vulnerability causes a denial-of-service condition, disrupting normal system operations and availability.
Users are advised to update to the latest firmware version provided by their system manufacturer that addresses this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.