My Intel Desktop Board DB75EN is affected by the AMT vulnerability.
I found a firmware update here:
https://www.intel.com/content/www/us/en/support/boards-and-kits/000024181.html Intel® Active Management Technology Escalation of Privilege Advisory...
However, when I try to install it, I encounter two problems.
First: I'm running Linux -- and the firmware update utility runs on Windows only. So is there also a utility available to update the FW under Linux?
As a workaround, I created a Windows 10 Recovery Drive (on a USB stick) and copied the update to that USB stick. I then booted the PC using that USB stick and tried to run the firmware update from within that Windows Recovery (WinPE) environment. I then got the following output:
D:\EN-FW-Update\EN-FW-Update-64bit>FWUpdLcl64.exe -f ME8_5M_Production.bin -generic
Intel (R) Firmware Update Utility Version: 126.96.36.1996
Copyright (C) 2007 - 2013, Intel Corporation. All rights reserved.
Error 8743: Unknown or Unsupported Platform
Cannot locate hardware platform identification
This program cannot be run on the current platform.
Any idea why this does not work? And how to resolve it?
WIndows 10 is likely to new for this board.... use an older copy of Windows 7 or use Hirens boot CD, that has a SLIM XP that will run without installing. We have used to it to update firmware on Adaptec boards before....
Use at your own risk though!
Thanks a lot for the suggestion. I created a USB boot disk with an Hiren boot image and tried using the 32-bit utility (FWUpdLcl.exe) to flash the ME firmware. However, I got the exact same output as before with the 64-bit utility (FWUpdLcl64.exe) under Windows 10 (recovery).
So it seems like the firmware update utility does not recognize my motherboard...?
Could it be related to the fact that the SKU Number and Family are not set?
See the following screenshots:
Okay, I finally fixed it. Others who may have the same issue can follow these steps to fix it:
Essential point that I skipped earlier, was to install the ME driver.
[sarcasm on]Thanks Intel, for mentioning that this driver is required to update the ME firmware. Also a big thanks for making an OS-agnostics update possible by releasing an updated BIOS for this board.[sarcasm off]
Thank you Stamgastje for sharing this valuable information with us and I'm sorry that you did not get the proper support at the /community/tech/vproexpert Intel® vPro™ Expert Center.