High severity7.6NVD Advisory· Published Mar 14, 2019· Updated Jun 17, 2026
CVE-2018-12191
CVE-2018-12191
Description
Bounds check in Kernel subsystem in Intel CSME before version 11.8.60, 11.11.60, 11.22.60 or 12.0.20, or Intel(R) Server Platform Services before versions 4.00.04.383 or SPS 4.01.02.174, or Intel(R) TXE before versions 3.1.60 or 4.0.10 may allow an unauthenticated user to potentially execute arbitrary code via physical access.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7<4.00.04.383, <4.01.02.174+ 1 more
- (no CPE)range: <4.00.04.383, <4.01.02.174
- cpe:2.3:o:intel:server_platform_services_firmware:*:*:*:*:*:*:*:*range: >=4.00.04.367,<4.00.04.383
- cpe:2.3:o:intel:converged_security_management_engine_firmware:*:*:*:*:*:*:*:*Range: >=11.0,<11.8.60
- cpe:2.3:o:intel:trusted_execution_engine_firmware:*:*:*:*:*:*:*:*Range: >=3.0,<3.1.60
- Intel Corporation/Intel(R) CSME, Server Platform Services, Trusted Execution Engine and Intel(R) Active Management Technologyv5Range: Multiple versions.
Patches
Vulnerability mechanics
References
3- security.netapp.com/advisory/ntap-20190318-0001/nvdThird Party Advisory
- support.hpe.com/hpsc/doc/public/displaynvdThird Party Advisory
- www.intel.com/content/www/us/en/security-center/advisory/INTEL-SA-00185.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.