CVE-2017-5695
Data corruption vulnerability in firmware in Intel Solid-State Drive Consumer, Professional, Embedded, Data Center affected firmware versions LSBG200, LSF031C, LSF036C, LBF010C, LSBG100, LSF031C, LSF036C, LBF010C, LSF031P, LSF036P, LBF010P, LSF031P,…
Does this matter?
Lower severity and a low EPSS score (0.29%). Track it; it rarely justifies an emergency change on its own.
Description
Data corruption vulnerability in firmware in Intel Solid-State Drive Consumer, Professional, Embedded, Data Center affected firmware versions LSBG200, LSF031C, LSF036C, LBF010C, LSBG100, LSF031C, LSF036C, LBF010C, LSF031P, LSF036P, LBF010P, LSF031P, LSF036P, LBF010P, LSMG200, LSF031E, LSF036E, LSMG100, LSF031E, LSF036E, LSDG200, LSF031D, LSF036D allows local users to cause a denial of service via unspecified vectors.
- CVSS 3.0
- 4.6 MEDIUMCVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.29% probability · 21th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-20
- Affected
- intel/ssd 540s 2.5\" firmware · intel/ssd 540s series m.2 firmware · intel/ssd pro 5400s 2.5\" firmware · intel/ssd pro 5400s m.2 firmware · intel/ssd e 5400s 2.5\" firmware · intel/ssd e 5400s m.2 firmware · intel/ssd dc s3100 firmware
- Source
- secure@intel.com
References
- http://support.lenovo.com/us/en/solutions/LEN-26626
- https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00079&languageid=en-frVendor Advisory
- http://support.lenovo.com/us/en/solutions/LEN-26626
- https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00079&languageid=en-frVendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.