Security Advisory

CVE-2018-9085

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-11-16 14:00:00
Last updated 2024-08-05 07:17:50
Assigner lenovo
State PUBLISHED

Description

A write protection lock bit was left unset after boot on an older generation of Lenovo and IBM System x servers, potentially allowing an attacker with administrator access to modify the subset of flash memory containing Intel Server Platform Services (SPS) and the system Flash Descriptors.