ASA-2019-00567 – Intel Smart Connect Technology: Improper file permission in software


Allele Security Alert

ASA-2019-00567

Identifier(s)

ASA-2019-00567, CVE-2019-11167, INTEL-SA-00286

Title

Improper file permission in software

Vendor(s)

Intel

Product(s)

Intel Smart Connect Technology

Affected version(s)

Unknown

Fixed version(s)

The product is no longer supported

Proof of concept

Unknown

Description

Improper file permission in software installer for Intel(R) Smart Connect Technology for Intel(R) NUC may allow an authenticated user to potentially enable escalation of privilege via local access.

Technical details

Unknown

Credits

Marius Gabriel Mihai

Reference(s)

INTEL-SA-00286
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00286.html

CVE-2019-11167
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-11167

CVE-2019-11167
https://nvd.nist.gov/vuln/detail/CVE-2019-11167

If there is any error in this alert or you wish a comprehensive analysis, let us know.

Last modified: October 21, 2019

We are not responsible for any data loss, device corruption or any other type of issue due to the use of any information mentioned in our security alerts.