Intel® Business Client Software Development
Support for Intel® vPro™ software development and technologies associated with Intel vPro platforms.
1380 Discussions

Intel SA 00075 Security Advisory for Active Management Technology

Joseph_O_Intel1
Employee
1,698 Views

There has been a lot of talk about security concerns in regards to AMT, here is a synopsis to the situation

  • We have received a report of a vulnerability in certain versions of Intel’s manageability firmware.
  • This vulnerability does not exist on consumer PCs.
  • This issue only affects business PCs using Intel® Active Management Technology (AMT), or Intel® Standard Manageability (ISM) or Intel® Small Business Technology (SBT). The vast majority of these is deployed at large companies.
  • We are not aware of any exploit for this vulnerability.
  • We are working with equipment manufacturers to make a firmware update available as soon as possible, and will share more details when we can.
  • Detection Guide and Tool is available to provide to customers and/or for CC agents to assist customers - Intel-SA-00075 Detection Guide.
  • The Detection Tool provides steps for single Windows GUI and Command Line Tool.  (This guide and tool is for systems running Windows, specific guide for Linux-based systems is pending
  • A Mitigation Guide is available to provide to customers and/or for CC agents to assist customers - Intel SA 00075 Mitigation Guide. (This guide is for systems running Windows, specific guide for Linux-based systems is pending)
  • Full Security Advisory can be found at - Intel SA 00075 Security Advisory

Important links

 

0 Kudos
3 Replies
Roman_L_
Beginner
1,698 Views

Hi Joseph,

Could you clarify the status for Intel NUCs? Are those "consumer PCs" and not affected, or are all products having AMT enabled affected by this?

Specific products: DC53427HYE, NUC5i5MYHE. The INTEL-SA-00075 discovery tool suggests to check with OEM. I attached a screenshot.

0 Kudos
Joseph_O_Intel1
Employee
1,698 Views

Intel® NUC and Compute Stick products impacted are listed below, with links to the product specific page within Download Center to obtain the BIOS update once it is available.

0 Kudos
Roman_L_
Beginner
1,698 Views

We just found that updates for the NUCs are available at the following link, but not listed on the product pages above:

https://www.intel.com/content/www/us/en/support/boards-and-kits/000024179.html

0 Kudos
Reply