Ó¢ÌØ¶û¶à¸ö²úÆ··ì϶°²È«¹«¸æ

°ä²¼¹¦·ò 2019-05-23

·ì϶±àºÅºÍ¼¶±ð


CVE±àºÅ£ºCVE-2019-11085£¬£¬£¬£¬£¬£¬ £¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬£¬£¬£¬£¬£¬ £¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º8.8£¬£¬£¬£¬£¬£¬ £¬¹Ù·½£º7.8
CVE±àºÅ£ºCVE-2019-11094£¬£¬£¬£¬£¬£¬ £¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬£¬£¬£¬£¬£¬ £¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º7.5£¬£¬£¬£¬£¬£¬ £¬¹Ù·½£º7.8
CVE±àºÅ£ºCVE-2019-0153£¬£¬£¬£¬£¬£¬ £¬Î£ÏÕ¼¶±ð£ºÑϳÁ£¬£¬£¬£¬£¬£¬ £¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º9.0£¬£¬£¬£¬£¬£¬ £¬¹Ù·½£º9.8
CVE±àºÅ£ºCVE-2019-0126£¬£¬£¬£¬£¬£¬ £¬Î£ÏÕ¼¶±ð£ºÖÐΣ£¬£¬£¬£¬£¬£¬ £¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º7.2£¬£¬£¬£¬£¬£¬ £¬¹Ù·½£º6.7
CVE±àºÅ£ºCVE-2019-0089£¬£¬£¬£¬£¬£¬ £¬Î£ÏÕ¼¶±ð£ºÖÐΣ£¬£¬£¬£¬£¬£¬ £¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º8.1£¬£¬£¬£¬£¬£¬ £¬¹Ù·½£º6.7
CVE±àºÅ£ºCVE-2019-0090£¬£¬£¬£¬£¬£¬ £¬Î£ÏÕ¼¶±ð£ºÖÐΣ£¬£¬£¬£¬£¬£¬ £¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º7.1£¬£¬£¬£¬£¬£¬ £¬¹Ù·½£º6.8
CVE±àºÅ£ºCVE-2019-0086£¬£¬£¬£¬£¬£¬ £¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬£¬£¬£¬£¬£¬ £¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º7.8£¬£¬£¬£¬£¬£¬ £¬¹Ù·½£º7.8

CVE±àºÅ£ºCVE-2019-0170£¬£¬£¬£¬£¬£¬ £¬Î£ÏÕ¼¶±ð£ºÖÐΣ£¬£¬£¬£¬£¬£¬ £¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º8.2£¬£¬£¬£¬£¬£¬ £¬¹Ù·½£º6.7


Ó°Ïì°æ±¾


ÊÜÓ°ÏìµÄ°æ±¾
CVE-2019-11085
»ùÓÚLinuxƽ̨µÄIntel(R) i915 Graphics 5.0֮ǰ°æ±¾ÖеÄKernel Mode Driver
CVE-2019-11094
Intel (R) NUC KitÖеÄϵͳ¹Ì¼þ
CVE-2019-0153
Intel(R) CSME 12.0.0 through 12.0.34
CVE-2019-0126
Intel(R) Xeon(R) Scalable ProcessorºÍIntel(R) Xeon(R) Processor D FamilyÖеÄsilicon reference¹Ì¼þ
CVE-2019-0089
Intel(R) SPSÖеÄ×Óϵͳ
CVE-2019-0090
Intel(R) CSME 12.0.35֮ǰ°æ±¾ºÍIntel(R) SPS SPS_E3_05.00.04.027.0֮ǰ°æ±¾
CVE-2019-0086
Intel(R) CSMEºÍIntel(R) TXEÖеÄDynamic Application¼ÓÔØÈí¼þ
CVE-2019-0170

Intel(R) DAL 12.0.35֮ǰ°æ±¾ÖеÄ×Óϵͳ


·ì϶¸ÅÊö


Ó¢ÌØ¶û°ä²¼¶à¸ö²úÆ··ì϶ÈçÏ£º
CVE-2019-11085
¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úƷδ¶ÔÊäÈëµÄÊý¾Ý½øÐÐÕýÈ·µÄÑéÖ¤¡£¡£¡£¡£¡£
CVE-2019-11094
¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úƷδ¶ÔÊäÈëµÄÊý¾Ý½øÐÐÕýÈ·µÄÑéÖ¤¡£¡£¡£¡£¡£
CVE-2019-0153
¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úÆ·ÔÚÄÚ´æÉÏÖ´ÐвÙ×÷ʱ£¬£¬£¬£¬£¬£¬ £¬Î´ÕýÈ·ÑéÖ¤Êý¾ÝÌìǵ£¬£¬£¬£¬£¬£¬ £¬µ¼ÖÂÏò¹ØÁªµÄÆäËûÄÚ´æµØÎ»ÉÏÖ´ÐÐÁËÃýÎóµÄ¶Áд²Ù×÷¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉÀûÓø÷ì϶µ¼Ö»º³åÇøÒç³ö»ò¶ÑÒç³öµÈ¡£¡£¡£¡£¡£
CVE-2019-0126
¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úƷδÕýÈ·ÏÞ¶ÈÀ´×ÔδÊÚȨ½ÇÉ«µÄ×ÊÔ´½Ó¼û¡£¡£¡£¡£¡£
CVE-2019-0089
¸Ã·ì϶ԴÓÚ·¨Ê½Ã»ÓÐÕýÈ·¹ýÂËÊý¾Ý¡£¡£¡£¡£¡£±¾µØ¹¥»÷Õß¿ÉÀûÓø÷ì϶ÌáÉýȨÏÞ¡£¡£¡£¡£¡£
CVE-2019-0090
¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úƷδÕýÈ·ÏÞ¶ÈÀ´×ÔδÊÚȨ½ÇÉ«µÄ×ÊÔ´½Ó¼û¡£¡£¡£¡£¡£
CVE-2019-0086
¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úƷδÕýÈ·ÏÞ¶ÈÀ´×ÔδÊÚȨ½ÇÉ«µÄ×ÊÔ´½Ó¼û¡£¡£¡£¡£¡£
CVE-2019-0170

¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úÆ·ÔÚÄÚ´æÉÏÖ´ÐвÙ×÷ʱ£¬£¬£¬£¬£¬£¬ £¬Î´ÕýÈ·ÑéÖ¤Êý¾ÝÌìǵ£¬£¬£¬£¬£¬£¬ £¬µ¼ÖÂÏò¹ØÁªµÄÆäËûÄÚ´æµØÎ»ÉÏÖ´ÐÐÁËÃýÎóµÄ¶Áд²Ù×÷¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉÀûÓø÷ì϶µ¼Ö»º³åÇøÒç³ö»ò¶ÑÒç³öµÈ¡£¡£¡£¡£¡£


·ì϶ÑéÖ¤


ÔÝÎÞPOC/EXP¡£¡£¡£¡£¡£


½¨¸´½¨Òé


Ŀǰ³§ÉÌÒѰ䲼Éý¼¶²¹¶¡ÒÔ½¨¸´·ì϶£¬£¬£¬£¬£¬£¬ £¬²¹¶¡»ñÈ¡Á´½Ó¼û²Î¿¼Á´½Ó¡£¡£¡£¡£¡£


²Î¿¼Á´½Ó


https://www.intel.com/content/www/us/en/security-center/advisory/INTEL-SA-00249.html
https://www.intel.com/content/www/us/en/security-center/advisory/INTEL-SA-00251.html
https://www.intel.com/content/www/us/en/security-center/advisory/INTEL-SA-00223.html
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00213.html