Intel warns of vulnerabilities in BIOS NUC computers

Spread the love

Intel warns of a vulnerability in the BIOS of its NUC computers, which could allow attackers to gain access to System Management Mode. The manufacturer says it will release updates to fix the problem.

To exploit the vulnerability, an attacker must have access to the local admin account. Intel reports that the smm can then be accessed via the bios. There is no description of the vulnerability, but Intel says it was discovered by security researcher Dmytro Oleksiuk. He discovered a similar vulnerability in Lenovo laptops and several Gigabyte motherboards earlier this year.

The researcher refers on Twitter to Intel’s warning, noting that there are no updates available yet to fix the vulnerability. Intel itself has made a list of affected products and mentions the recommended bios versions that users should install. In many cases, these are older bios versions that have already been released. Intel says in the message, however, that it will also come up with updates.

Last year it turned out that older Intel processors contain a vulnerability in the smm, which makes it possible to implement rootkits that cannot be detected. It is not clear to what extent the new vulnerability is related to that discovery.

Originally, the System Management Mode was built in for power management, but many functionalities have been added. For example, the trusted platform module, in which encryption keys can be stored, is housed in smm.

Intel has identified the problem with some of its own NUCs, and the company’s Compute Stick is also vulnerable. In its announcement, Intel states that updates will be released, but at the time of writing no new bios versions for the affected products are available.

Model Number Recommended bios
Version

NUC6i3SYB (Swift Canyon – i3)

NUC6i5SYB (Swift Canyon – i5)

SYSKLi35.86A

SY0051

NUC5PGYH (Grass Canyon – Pentium)

NUC5CPYH (Pinnacle Canyon – Celeron)

NUC5PPYH (Pinnacle Canyon – Pentium)

PYBWCEL.86A

PY0056

NUC6i7KYB (Skull Canyon – i7)

KYSKLi70.86A

KY0041

NUC5i7RYH (Rock Canyon – i7)

NUC5i5RYB (Rock Canyon – i5)

NUC5i3RYB (Rock Canyon – i3)

RYBDWi35.86A

RY0359

STK1AW32SC (Sterling City)

STK1A32SC (Sterling City)

SCCHTAX5.86A

SC0029

STK2mv64CC (Cedar City – m3)

CCSKLm30.86a

CCV00042

STK2m3w64CC (Cedar City – m5)

CCSKLm5v.86A

CC0042

You might also like