Vulnerability Description
Improper memory initialization in Platform Sample/Silicon Reference firmware Intel(R) Server Board, Intel(R) Server System and Intel(R) Compute Module may allow privileged user to potentially enable an escalation of privilege via local access.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Intel | Platform Sample Firmware | - |
| Intel | Bbs2600Bpb | - |
| Intel | Bbs2600Bpq | - |
| Intel | Bbs2600Bps | - |
| Intel | Bbs2600Stb | - |
| Intel | Bbs2600Stq | - |
| Intel | Bbs7200Ap | - |
| Intel | Bbs7200Apl | - |
| Intel | Dbs2600Cw2R | - |
| Intel | Dbs2600Cw2Sr | - |
| Intel | Dbs2600Cwtr | - |
| Intel | Dbs2600Cwtsr | - |
| Intel | Hns2600Bpb | - |
| Intel | Hns2600Bpb24 | - |
| Intel | Hns2600Bpblc | - |
| Intel | Hns2600Bpblc24 | - |
| Intel | Hns2600Bpq | - |
| Intel | Hns2600Bpq24 | - |
| Intel | Hns2600Bps | - |
| Intel | Hns2600Bps24 | - |
Related Weaknesses (CWE)
References
- https://security.netapp.com/advisory/ntap-20190318-0002/
- https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpe
- https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpe
- https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpe
- https://www.intel.com/content/www/us/en/security-center/advisory/INTEL-SA-00191.Vendor Advisory
- https://security.netapp.com/advisory/ntap-20190318-0002/
- https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpe
- https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpe
- https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpe
- https://www.intel.com/content/www/us/en/security-center/advisory/INTEL-SA-00191.Vendor Advisory
FAQ
What is CVE-2018-12204?
CVE-2018-12204 is a vulnerability with a CVSS score of 6.7 (MEDIUM). Improper memory initialization in Platform Sample/Silicon Reference firmware Intel(R) Server Board, Intel(R) Server System and Intel(R) Compute Module may allow privileged user to potentially enable a...
How severe is CVE-2018-12204?
CVE-2018-12204 has been rated MEDIUM with a CVSS base score of 6.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2018-12204?
Check the references section above for vendor advisories and patch information. Affected products include: Intel Platform Sample Firmware, Intel Bbs2600Bpb, Intel Bbs2600Bpq, Intel Bbs2600Bps, Intel Bbs2600Stb.