7.5
CVSSv3

CVE-2017-5721

Published: 11/10/2017 Updated: 03/11/2017
CVSS v2 Base Score: 4.4 | Impact Score: 6.4 | Exploitability Score: 3.4
CVSS v3 Base Score: 7.5 | Impact Score: 6 | Exploitability Score: 0.8
VMScore: 392
Vector: AV:L/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Insufficient input validation in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows local malicious users to execute arbitrary code via manipulation of memory.

Vulnerable Product Search on Vulmon Subscribe to Product

intel nuc7i7bnh_firmware ccsklm5v.86a.0052

intel nuc7i7bnh_firmware ccsklm30.86a.0052

intel nuc7i7bnh_firmware rybdwi35.86a.0366

intel nuc7i7bnh_firmware tybyt20h.86a.0015

intel nuc7i7bnh_firmware bnkbl357.86a.0052

intel nuc7i7bnh_firmware ayaplcel.86a.0041

intel nuc7i7bnh_firmware kyskli70.86a.0050

intel nuc7i7bnh_firmware dnkbli5v.86a.0026

intel nuc7i7bnh_firmware syskli35.86a.0062

intel nuc7i7bnh_firmware dnkbli30.86a.0026

intel nuc7i5bnh_firmware tybyt20h.86a.0015

intel nuc7i5bnh_firmware bnkbl357.86a.0052

intel nuc7i5bnh_firmware dnkbli30.86a.0026

intel nuc7i5bnh_firmware dnkbli5v.86a.0026

intel nuc7i5bnh_firmware ayaplcel.86a.0041

intel nuc7i5bnh_firmware syskli35.86a.0062

intel nuc7i5bnh_firmware kyskli70.86a.0050

intel nuc7i5bnh_firmware ccsklm30.86a.0052

intel nuc7i5bnh_firmware ccsklm5v.86a.0052

intel nuc7i5bnh_firmware rybdwi35.86a.0366

intel nuc7i5bnk_firmware dnkbli5v.86a.0026

intel nuc7i5bnk_firmware syskli35.86a.0062

intel nuc7i5bnk_firmware kyskli70.86a.0050

intel nuc7i5bnk_firmware ccsklm5v.86a.0052

intel nuc7i5bnk_firmware ccsklm30.86a.0052

intel nuc7i5bnk_firmware tybyt20h.86a.0015

intel nuc7i5bnk_firmware dnkbli30.86a.0026

intel nuc7i5bnk_firmware ayaplcel.86a.0041

intel nuc7i5bnk_firmware rybdwi35.86a.0366

intel nuc7i5bnk_firmware bnkbl357.86a.0052

intel nuc7i3bnh_firmware ccsklm5v.86a.0052

intel nuc7i3bnh_firmware ccsklm30.86a.0052

intel nuc7i3bnh_firmware rybdwi35.86a.0366

intel nuc7i3bnh_firmware tybyt20h.86a.0015

intel nuc7i3bnh_firmware syskli35.86a.0062

intel nuc7i3bnh_firmware dnkbli30.86a.0026

intel nuc7i3bnh_firmware ayaplcel.86a.0041

intel nuc7i3bnh_firmware kyskli70.86a.0050

intel nuc7i3bnh_firmware bnkbl357.86a.0052

intel nuc7i3bnh_firmware dnkbli5v.86a.0026

intel nuc7i3bnk_firmware ayaplcel.86a.0041

intel nuc7i3bnk_firmware syskli35.86a.0062

intel nuc7i3bnk_firmware tybyt20h.86a.0015

intel nuc7i3bnk_firmware bnkbl357.86a.0052

intel nuc7i3bnk_firmware dnkbli30.86a.0026

intel nuc7i3bnk_firmware dnkbli5v.86a.0026

intel nuc7i3bnk_firmware ccsklm5v.86a.0052

intel nuc7i3bnk_firmware rybdwi35.86a.0366

intel nuc7i3bnk_firmware kyskli70.86a.0050

intel nuc7i3bnk_firmware ccsklm30.86a.0052

Github Repositories

CVE-2017-5721 Proof-of-Concept

UsbRt SMM Privilege Elevation This is a Proof-of-Concept code that demonstrates the exploitation of the CVE-2017-5721 vulnerability This PoC causes a system to be completely stuck because of Machine Check Exception occurred All you need is CHIPSEC Framework installed And don't forget to put GRUB_CMDLINE_LINUX_DEFAULT="quiet splash acpi=off" in /etc/default/gru