<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Intel AMT Firmware drivers vulnerability issue in Intel vPro® Platform</title>
    <link>https://community.intel.com/t5/Intel-vPro-Platform/Intel-AMT-Firmware-drivers-vulnerability-issue/m-p/453229#M5689</link>
    <description>&lt;P&gt;Hello guys,&lt;/P&gt;&lt;P&gt;I want to confirm if a machine has the Firmware driver that is considered vulnerable (&lt;B&gt;X.X.XX.1XXX&lt;/B&gt;) and a MEI (Intel Management Engine Components Driver) driver installed,&lt;/P&gt;&lt;P&gt;is it still considered vulnerable to the local security issue and does step 2 from the mitigation guide(disabling/removing the LMS service) still needs to be followed?&lt;/P&gt;&lt;P&gt;Also is the Intel management and security application local management service (LMS) installed with the MEI drivers? And if removed would the MEI drivers need to be reinstalled?&lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;</description>
    <pubDate>Wed, 10 May 2017 08:12:25 GMT</pubDate>
    <dc:creator>idata</dc:creator>
    <dc:date>2017-05-10T08:12:25Z</dc:date>
    <item>
      <title>Intel AMT Firmware drivers vulnerability issue</title>
      <link>https://community.intel.com/t5/Intel-vPro-Platform/Intel-AMT-Firmware-drivers-vulnerability-issue/m-p/453229#M5689</link>
      <description>&lt;P&gt;Hello guys,&lt;/P&gt;&lt;P&gt;I want to confirm if a machine has the Firmware driver that is considered vulnerable (&lt;B&gt;X.X.XX.1XXX&lt;/B&gt;) and a MEI (Intel Management Engine Components Driver) driver installed,&lt;/P&gt;&lt;P&gt;is it still considered vulnerable to the local security issue and does step 2 from the mitigation guide(disabling/removing the LMS service) still needs to be followed?&lt;/P&gt;&lt;P&gt;Also is the Intel management and security application local management service (LMS) installed with the MEI drivers? And if removed would the MEI drivers need to be reinstalled?&lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;</description>
      <pubDate>Wed, 10 May 2017 08:12:25 GMT</pubDate>
      <guid>https://community.intel.com/t5/Intel-vPro-Platform/Intel-AMT-Firmware-drivers-vulnerability-issue/m-p/453229#M5689</guid>
      <dc:creator>idata</dc:creator>
      <dc:date>2017-05-10T08:12:25Z</dc:date>
    </item>
    <item>
      <title>Re: Intel AMT Firmware drivers vulnerability issue</title>
      <link>https://community.intel.com/t5/Intel-vPro-Platform/Intel-AMT-Firmware-drivers-vulnerability-issue/m-p/453230#M5690</link>
      <description>&lt;P&gt;MartinKaldramov&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you for your query.  For more details on the security vulnerability, you can refer to the security advisory here:&lt;/P&gt;&lt;P&gt;&lt;A href="https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00075&amp;amp;languageid=en-fr"&gt;https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00075&amp;amp;languageid=en-fr&lt;/A&gt; &lt;A href="https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00075&amp;amp;languageid=en-fr"&gt;https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00075&amp;amp;languageid=en-fr&lt;/A&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;Breaking down your questions:&lt;/P&gt;&lt;P&gt;I want to confirm if a machine has the Firmware driver that is considered vulnerable (&lt;B&gt;X.X.XX.1XXX&lt;/B&gt;) and a MEI (Intel Management Engine Components Driver) driver installed,&lt;/P&gt;&lt;P&gt;is it still considered vulnerable to the local security issue?&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;Take the following steps to mitigate the risk of your systems being compromised:&lt;/P&gt;&lt;P&gt;1.  Unprovisioned your system using the /full flag through ACUConfig.exe&lt;/P&gt;&lt;P&gt;2.  Patched your system with the updated firmware fix&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;and does step 2 from the mitigation guide(disabling/removing the LMS service) still needs to be followed?&lt;/P&gt;&lt;P&gt;All the steps need to be followed in the mitigation guide.&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;Also is the Intel management and security application local management service (LMS) installed with the MEI drivers?&lt;/P&gt;&lt;P&gt;Yes&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;And if removed would the MEI drivers need to be reinstalled?&lt;/P&gt;&lt;P&gt;Yes&lt;/P&gt;</description>
      <pubDate>Wed, 17 May 2017 22:23:48 GMT</pubDate>
      <guid>https://community.intel.com/t5/Intel-vPro-Platform/Intel-AMT-Firmware-drivers-vulnerability-issue/m-p/453230#M5690</guid>
      <dc:creator>MichaelA_Intel</dc:creator>
      <dc:date>2017-05-17T22:23:48Z</dc:date>
    </item>
  </channel>
</rss>

