CVE-2017-5703
UnknownEPSS 0.36%
Last modified
CVE-2017-5703 is a vulnerability of currently unknown severity. Configuration of SPI Flash in platforms based on multiple Intel platforms allow a local attacker to alter the behavior of the SPI flash potentially leading to a Denial of Service.. EPSS estimates a 0.36% chance of exploitation in the next 30 days.
Description
Configuration of SPI Flash in platforms based on multiple Intel platforms allow a local attacker to alter the behavior of the SPI flash potentially leading to a Denial of Service.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Intel | Core I7-8550u | All versions |
| Intel | Core I7-8559u | All versions |
| Intel | Core I7-8650u | All versions |
| Intel | Core I7-8700 | All versions |
| Intel | Core I7-8700b | All versions |
| Intel | Core I7-8700k | All versions |
| Intel | Core I7-8700t | All versions |
| Intel | Core I7-8705g | All versions |
| Intel | Core I7-8706g | All versions |
| Intel | Core I7-8709g | All versions |
| Intel | Core I7-8750h | All versions |
| Intel | Core I7-8809g | All versions |
| Intel | Core I7-8850h | All versions |
| Intel | Core I7-7500u | All versions |
| Intel | Core I7-7560u | All versions |
| Intel | Core I7-7567u | All versions |
| Intel | Core I7-7600u | All versions |
| Intel | Core I7-7660u | All versions |
| Intel | Core I7-7700 | All versions |
| Intel | Core I7-7700hq | All versions |
| Intel | Core I7-7700k | All versions |
| Intel | Core I7-7700t | All versions |
| Intel | Core I7-7820eq | All versions |
| Intel | Core I7-7820hk | All versions |
| Intel | Core I7-7820hq | All versions |
| Intel | Core I7-7920hq | All versions |
| Intel | Core I7-7y75 | All versions |
| Intel | Core I7-6500u | All versions |
| Intel | Core I7-6560u | All versions |
| Intel | Core I7-6567u | All versions |
| Intel | Core I7-6600u | All versions |
| Intel | Core I7-6650u | All versions |
| Intel | Core I7-6660u | All versions |
| Intel | Core I7-6700 | All versions |
| Intel | Core I7-6700hq | All versions |
| Intel | Core I7-6700k | All versions |
| Intel | Core I7-6700t | All versions |
| Intel | Core I7-6700te | All versions |
| Intel | Core I7-6770hq | All versions |
| Intel | Core I7-6785r | All versions |
| Intel | Core I7-6820eq | All versions |
| Intel | Core I7-6820hk | All versions |
| Intel | Core I7-6820hq | All versions |
| Intel | Core I7-6822eq | All versions |
| Intel | Core I7-6870hq | All versions |
| Intel | Core I7-6920hq | All versions |
| Intel | Core I7-6970hq | All versions |
| Intel | Core I7-5500u | All versions |
| Intel | Core I7-5550u | All versions |
| Intel | Core I7-5557u | All versions |
Showing 50 of 308 affected configurations. See NVD for the full list.
References
- http://www.securitytracker.com/id/1040626Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1040626Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2017-5703?
Configuration of SPI Flash in platforms based on multiple Intel platforms allow a local attacker to alter the behavior of the SPI flash potentially leading to a Denial of Service.
How severe is CVE-2017-5703?
Severity scoring for CVE-2017-5703 is pending analysis. The EPSS model estimates a 0.36% probability of exploitation in the next 30 days.
How do I fix CVE-2017-5703?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2017
- CVE-2017-5697Insufficient clickjacking protection in the Web User Interfa…6.5
- CVE-2017-5698Intel Active Management Technology, Intel Standard Manageabi…4.4
- CVE-2017-5699Input validation error in Intel MinnowBoard 3 Firmware versi…
- CVE-2017-5700Insufficient protection of password storage in system firmwa…
- CVE-2017-5701Insecure platform configuration in system firmware for Intel…
- CVE-2017-5702Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2017-5704Platform sample code firmware included with 4th Gen Intel Co…
- CVE-2017-5705Multiple buffer overflows in kernel in Intel Manageability E…
- CVE-2017-5706Multiple buffer overflows in kernel in Intel Server Platform…
- CVE-2017-5707Multiple buffer overflows in kernel in Intel Trusted Executi…
- CVE-2017-5708Multiple privilege escalations in kernel in Intel Manageabil…
- CVE-2017-5709Multiple privilege escalations in kernel in Intel Server Pla…
Are you affected by CVE-2017-5703?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
