Insufficient control flow management in subsystem for Intelยฎ CSME versions before 11.8.80, Intelยฎ TXE versions before 3.1.80 may allow an unauthenticated user to potentially enable information disclosure via physical access.
Race condition in subsystem for Intelยฎ CSME versions before 12.0.70 and 14.0.45, Intelยฎ SPS versions before E5_04.01.04.400 and E3_05.01.04.200 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
Inadequate encryption strength in subsystem for Intelยฎ CSME versions before 13.0.40 and 13.30.10 may allow an unauthenticated user to potentially enable information disclosure via physical access.
Use after free in DAL subsystem for Intelยฎ CSME versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 13.0.40, 13.30.10, 14.0.45 and 14.5.25, Intelยฎ TXE 3.1.80, 4.0.30 may allow an authenticated user to potentially enable escalation of privileges via local access.
Impact
There is no impact; F5 products are not affected by this vulnerability.