Vulnerability Description
Intel Desktop and Intel Mobile Boards with BIOS firmware DQ35JO, DQ35MP, DP35DP, DG33FB, DG33BU, DG33TL, MGM965TW, D945GCPE, and DX38BT allows local administrators with ring 0 privileges to gain additional privileges and modify code that is running in System Management Mode, or access hypervisory memory as demonstrated at Black Hat 2008 by accessing certain remapping registers in Xen 3.3.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Intel | Bios | dg33bu |
Related Weaknesses (CWE)
References
- http://invisiblethingslab.com/bh08/part2-full.pdf
- http://osvdb.org/49901
- http://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00017&languageidPatchVendor Advisory
- http://theinvisiblethings.blogspot.com/2008/08/attacking-xen-domu-vs-dom0.html
- http://theinvisiblethings.blogspot.com/2008/08/intel-patches-q35-bug.html
- http://www.securityfocus.com/bid/30823
- https://exchange.xforce.ibmcloud.com/vulnerabilities/44676
- http://invisiblethingslab.com/bh08/part2-full.pdf
- http://osvdb.org/49901
- http://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00017&languageidPatchVendor Advisory
- http://theinvisiblethings.blogspot.com/2008/08/attacking-xen-domu-vs-dom0.html
- http://theinvisiblethings.blogspot.com/2008/08/intel-patches-q35-bug.html
- http://www.securityfocus.com/bid/30823
- https://exchange.xforce.ibmcloud.com/vulnerabilities/44676
FAQ
What is CVE-2008-7096?
CVE-2008-7096 is a vulnerability with a CVSS score of 6.9 (MEDIUM). Intel Desktop and Intel Mobile Boards with BIOS firmware DQ35JO, DQ35MP, DP35DP, DG33FB, DG33BU, DG33TL, MGM965TW, D945GCPE, and DX38BT allows local administrators with ring 0 privileges to gain addit...
How severe is CVE-2008-7096?
CVE-2008-7096 has been rated MEDIUM with a CVSS base score of 6.9/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2008-7096?
Check the references section above for vendor advisories and patch information. Affected products include: Intel Bios.