Vulnerability Description
Incorrect policy enforcement in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows attackers with local or physical access to bypass enforcement of integrity protections via manipulation of firmware storage.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Intel | Nuc7I7Bnh Firmware | ayaplcel.86a.0041 |
| Intel | Nuc7I7Bnh | - |
| Intel | Nuc7I5Bnh Firmware | ayaplcel.86a.0041 |
| Intel | Nuc7I5Bnh | - |
| Intel | Nuc7I5Bnk Firmware | ayaplcel.86a.0041 |
| Intel | Nuc7I5Bnk | - |
| Intel | Nuc7I3Bnh Firmware | ayaplcel.86a.0041 |
| Intel | Nuc7I3Bnh | - |
| Intel | Nuc7I3Bnk Firmware | ayaplcel.86a.0041 |
| Intel | Nuc7I3Bnk | - |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/bid/101236Third Party AdvisoryVDB Entry
- https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00084&languageiPatchThird Party Advisory
- http://www.securityfocus.com/bid/101236Third Party AdvisoryVDB Entry
- https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00084&languageiPatchThird Party Advisory
FAQ
What is CVE-2017-5722?
CVE-2017-5722 is a vulnerability with a CVSS score of 7.5 (HIGH). Incorrect policy enforcement in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows attackers with local or physical access to bypass enfor...
How severe is CVE-2017-5722?
CVE-2017-5722 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-5722?
Check the references section above for vendor advisories and patch information. Affected products include: Intel Nuc7I7Bnh Firmware, Intel Nuc7I7Bnh, Intel Nuc7I5Bnh Firmware, Intel Nuc7I5Bnh, Intel Nuc7I5Bnk Firmware.