2021年11月9日(米国時間)、Intelから複数のセキュリティアドバイザリが公開されました。影響を受ける製品やバージョンについての詳細は、Intelのアドバイザリを参照いただき、影響範囲の確認と対策をご検討ください。
INTEL-SA-00393:Intel Thunderbolt non-DCH Driver for Windows Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00393.html
Intel Thunderbolt non-DCH(Declarative Componentized Hardware)driver for Windowsに権限昇格の脆弱性
INTEL-SA-00481:Intel Core Processors with Radeon RX Vega M GL Graphics Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00481.html
Intel Core processor with Radeon RX Vega M GL integrated graphicsに権限昇格、情報漏えい、サービス運用妨害(DoS)の脆弱性
INTEL-SA-00482:Intel EMA Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00482.html
Intel EMA(Endpoint Management Assistant)にサービス運用妨害(DoS)の脆弱性
INTEL-TA-00509:Intel PROSet/Wireless WiFi and Killer WiFi Software Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00509.html
一部のIntel PROSet/ WirelessWiFiおよびKiller WiFiに権限昇格、情報漏えい、サービス運用妨害(DoS)の脆弱性
INTEL-SA-00524:Intel Ethernet Diagnostic Driver Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00524.html
Intel Ethernet Diagnostic Driver for Windowsに権限昇格の脆弱性
INTEL-SA-00528:Intel Processor Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00528.html
一部のIntel Processorに権限昇格の脆弱性
INTEL-SA-00533:Intel Thunderbolt DCH Driver for Windows Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00533.html
一部のIntel Thunderbolt Declarative Componentized Hardware(DCH)Drivers for Windowsにサービス運用妨害(DoS)の脆弱性
INTEL-SA-00535:Intel SSD DC Firmware Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00535.html
一部のIntel Solid State Drive(SSD)Data Center(DC)に情報漏えいの脆弱性
INTEL-SA-00538:Intel Distribution of OpenVINO Toolkit Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00538.html
Intel Distribution of OpenVINO Toolkitにサービス運用妨害(DoS)の脆弱性
INTEL-SA-00540:Intel Wireless Bluetooth and Killer Bluetooth Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00540.html
一部のIntel Wireless BluetoothおよびKiller Bluetoothに権限昇格、サービス運用妨害(DoS)の脆弱性
INTEL-SA-00547:Intel SoC Watch 2021 Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00547.html
Intel SoC Watch driverに権限昇格の脆弱性
INTEL-SA-00551:Intel oneAPI Toolkit Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00551.html
Intel oneAPI Toolkitに権限昇格の脆弱性
INTEL-SA-00554:Intel Ethernet Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00554.html
一部のIntel Ethernet controllerに権限昇格、サービス運用妨害(DoS)の脆弱性
INTEL-SA-00555:Intel Ethernet Drivers Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00555.html
一部のIntel Ethernet driverに権限昇格、サービス運用妨害(DoS)の脆弱性
INTEL-SA-00556:Intel VTune Profiler Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00556.html
Intel VTune Profilerに権限昇格の脆弱性
INTEL-SA-00557:Intel RealSense D400 Series UWP Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00557.html
Intel RealSense D400 Series Universal Windows Platform(UWP)driver for Windows 10に権限昇格の脆弱性
INTEL-SA-00560:Intel Serial IO Driver for Intel NUC 11 Gen Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00560.html
Intel Serial IO driver for Intel NUC 11 Genに権限昇格の脆弱性
INTEL-SA-00562:BIOS Reference Code Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00562.html
一部のIntel ProcessorsのBIOSに権限昇格の脆弱性
INTEL-SA-00564:Intel oneAPI Rendering Toolkit Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00564.html
Intel oneAPI Rendering Toolkitに権限昇格の脆弱性
INTEL-SA-00565:Crypto API Toolkit for Intel SGX Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00565.html
Crypto API Toolkit for Intel SGXに権限昇格の脆弱性
INTEL-SA-00566:Intel Graphics Drivers Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00566.html
一部のIntel Graphics Driverに権限昇格、サービス運用妨害(DoS)の脆弱性
INTEL-SA-00567:Intel NUC Firmware Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00567.html
一部のIntel NUCにサービス運用妨害(DoS)の脆弱性
INTEL-SA-00568:Intel NUC HDMI Firmware Update Tool Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00568.html
Intel NUC HDMI Firmware Update Toolに権限昇格の脆弱性
INTEL-SA-00569:Intel NUC M15 Laptop Kit Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00569.html
Intel NUC M15 Laptop Kit driver packに権限昇格、サービス運用妨害(DoS)の脆弱性
INTEL-SA-00584:Safestring Library Advisory
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00584.html
Safestring libraryに権限昇格の脆弱性
Intel Corporation
Intel Product Security Center Advisories
https://www.intel.com/content/www/us/en/security-center/default.html
CyberNewsFlashは、注意喚起とは異なり、発行時点では注意喚起の基準に満たない脆弱性の情報やセキュリティアップデート予告なども含まれます。今回の件を含め、提供いただける情報がありましたら、JPCERT/CCまでご連絡ください。
一般社団法人JPCERTコーディネーションセンター(JPCERT/CC)
早期警戒グループ
Email:ew-info@jpcert.or.jp