Ó¢ÌØ¶û¶à¸ö²úÆ··ì϶°²È«¹«¸æ

°ä²¼¹¦·ò 2019-05-23

·ì϶±àºÅºÍ¼¶±ð


CVE±àºÅ£ºCVE-2019-11085£¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º8.8£¬¹Ù·½£º7.8
CVE±àºÅ£ºCVE-2019-11094£¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º7.5£¬¹Ù·½£º7.8
CVE±àºÅ£ºCVE-2019-0153£¬Î£ÏÕ¼¶±ð£ºÑϳÁ£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º9.0£¬¹Ù·½£º9.8
CVE±àºÅ£ºCVE-2019-0126£¬Î£ÏÕ¼¶±ð£ºÖÐΣ£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º7.2£¬¹Ù·½£º6.7
CVE±àºÅ£ºCVE-2019-0089£¬Î£ÏÕ¼¶±ð£ºÖÐΣ£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º8.1£¬¹Ù·½£º6.7
CVE±àºÅ£ºCVE-2019-0090£¬Î£ÏÕ¼¶±ð£ºÖÐΣ£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º7.1£¬¹Ù·½£º6.8
CVE±àºÅ£ºCVE-2019-0086£¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º7.8£¬¹Ù·½£º7.8

CVE±àºÅ£ºCVE-2019-0170£¬Î£ÏÕ¼¶±ð£ºÖÐΣ£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º8.2£¬¹Ù·½£º6.7


Ó°Ïì°æ±¾


ÊÜÓ°ÏìµÄ°æ±¾
CVE-2019-11085
»ùÓÚLinuxƽ̨µÄIntel(R) i915 Graphics 5.0֮ǰ°æ±¾ÖеÄKernel Mode Driver
CVE-2019-11094
Intel (R) NUC KitÖеÄϵͳ¹Ì¼þ
CVE-2019-0153
Intel(R) CSME 12.0.0 through 12.0.34
CVE-2019-0126
Intel(R) Xeon(R) Scalable ProcessorºÍIntel(R) Xeon(R) Processor D FamilyÖеÄsilicon reference¹Ì¼þ
CVE-2019-0089
Intel(R) SPSÖеÄ×Óϵͳ
CVE-2019-0090
Intel(R) CSME 12.0.35֮ǰ°æ±¾ºÍIntel(R) SPS SPS_E3_05.00.04.027.0֮ǰ°æ±¾
CVE-2019-0086
Intel(R) CSMEºÍIntel(R) TXEÖеÄDynamic Application¼ÓÔØÈí¼þ
CVE-2019-0170

Intel(R) DAL 12.0.35֮ǰ°æ±¾ÖеÄ×Óϵͳ


·ì϶¸ÅÊö


Ó¢ÌØ¶û°ä²¼¶à¸ö²úÆ··ì϶ÈçÏ£º
CVE-2019-11085
¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úƷδ¶ÔÊäÈëµÄÊý¾Ý½øÐÐÕýÈ·µÄÑéÖ¤¡£
CVE-2019-11094
¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úƷδ¶ÔÊäÈëµÄÊý¾Ý½øÐÐÕýÈ·µÄÑéÖ¤¡£
CVE-2019-0153
¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úÆ·ÔÚÄÚ´æÉÏÖ´ÐвÙ×÷ʱ£¬Î´ÕýÈ·ÑéÖ¤Êý¾ÝÌìǵ£¬µ¼ÖÂÏò¹ØÁªµÄÆäËûÄÚ´æµØÎ»ÉÏÖ´ÐÐÁËÃýÎóµÄ¶Áд²Ù×÷¡£¹¥»÷Õß¿ÉÀûÓø÷ì϶µ¼Ö»º³åÇøÒç³ö»ò¶ÑÒç³öµÈ¡£
CVE-2019-0126
¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úƷδÕýÈ·ÏÞ¶ÈÀ´×ÔδÊÚȨ½ÇÉ«µÄ×ÊÔ´½Ó¼û¡£
CVE-2019-0089
¸Ã·ì϶ԴÓÚ·¨Ê½Ã»ÓÐÕýÈ·¹ýÂËÊý¾Ý¡£±¾µØ¹¥»÷Õß¿ÉÀûÓø÷ì϶ÌáÉýȨÏÞ¡£
CVE-2019-0090
¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úƷδÕýÈ·ÏÞ¶ÈÀ´×ÔδÊÚȨ½ÇÉ«µÄ×ÊÔ´½Ó¼û¡£
CVE-2019-0086
¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úƷδÕýÈ·ÏÞ¶ÈÀ´×ÔδÊÚȨ½ÇÉ«µÄ×ÊÔ´½Ó¼û¡£
CVE-2019-0170

¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úÆ·ÔÚÄÚ´æÉÏÖ´ÐвÙ×÷ʱ£¬Î´ÕýÈ·ÑéÖ¤Êý¾ÝÌìǵ£¬µ¼ÖÂÏò¹ØÁªµÄÆäËûÄÚ´æµØÎ»ÉÏÖ´ÐÐÁËÃýÎóµÄ¶Áд²Ù×÷¡£¹¥»÷Õß¿ÉÀûÓø÷ì϶µ¼Ö»º³åÇøÒç³ö»ò¶ÑÒç³öµÈ¡£


·ì϶ÑéÖ¤


ÔÝÎÞPOC/EXP¡£


½¨¸´½¨Òé


Ŀǰ³§ÉÌÒѰ䲼Éý¼¶²¹¶¡ÒÔ½¨¸´·ì϶£¬²¹¶¡»ñÈ¡Á´½Ó¼û²Î¿¼Á´½Ó¡£


²Î¿¼Á´½Ó


https://www.intel.com/content/www/us/en/security-center/advisory/INTEL-SA-00249.html
https://www.intel.com/content/www/us/en/security-center/advisory/INTEL-SA-00251.html
https://www.intel.com/content/www/us/en/security-center/advisory/INTEL-SA-00223.html
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00213.html