ASA-2019-00336 – Intel Turbo Boost Max Technology: Improper permissions in the installer


Allele Security Alert

ASA-2019-00336

Identifier(s)

ASA-2019-00336, CVE-2019-0164, INTEL-SA-00243

Title

Improper permissions in the installer

Vendor(s)

Intel

Product(s)

Intel® Turbo Boost Max Technology 3.0

Affected version(s)

Intel® Turbo Boost Max Technology 3.0 driver version 1.0.0.1035 and before

Fixed version(s)

Intel has issued a Product Discontinuation notice for the Intel® Turbo Boost Max Technology 3.0 driver and recommends that users of the Intel® Turbo Boost Max Technology 3.0 driver uninstall it or discontinue use at their earliest convenience.

Proof of concept

Unknown

Description

Improper permissions in the installer for Intel(R) Turbo Boost Max Technology 3.0 driver version 1.0.0.1035 and before may allow an authenticated user to potentially enable escalation of privilege via local access.

Technical details

Unknown

Credits

Marius Gabriel Mihai

Reference(s)

Intel® Turbo Boost Max Technology 3.0 Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00243.html

CVE-2019-0164
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-0164

CVE-2019-0164
https://nvd.nist.gov/vuln/detail/CVE-2019-0164

If there is any error in this alert or you wish a comprehensive analysis, let us know.

Last modified: June 12, 2019

We are not responsible for any data loss, device corruption or any other type of issue due to the use of any information mentioned in our security alerts.