
CVE-2018-3655
https://notcve.org/view.php?id=CVE-2018-3655
12 Sep 2018 — A vulnerability in a subsystem in Intel CSME before version 11.21.55, Intel Server Platform Services before version 4.0 and Intel Trusted Execution Engine Firmware before version 3.1.55 may allow an unauthenticated user to potentially modify or disclose information via physical access. Una vulnerabilidad en un subsistema en Intel CSME en versiones anteriores a la 11.21.55, Intel Server Platform Services en versiones anteriores a la 4.0 y el firmware Intel Trusted Execution Engine en versiones anteriores a l... • https://security.netapp.com/advisory/ntap-20180924-0003 •

CVE-2017-5706 – HPE Security Bulletin HPESBHF03798 1
https://notcve.org/view.php?id=CVE-2017-5706
21 Nov 2017 — Multiple buffer overflows in kernel in Intel Server Platform Services Firmware 4.0 allow attacker with local access to the system to execute arbitrary code. Múltiples desbordamientos de búfer en el kernel en Intel Server Platform Services Firmware 4.0 permiten que un atacante con acceso local al sistema ejecute código arbitrario. A vulnerability in HPE certain Gen10 Servers, DL20 Gen9, ML30 Gen9 and certain Apollo servers with Intel Server Platform Service (SPS) v4.0 are vulnerable to local Denial of Servic... • http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-5709 – HPE Security Bulletin HPESBHF03798 1
https://notcve.org/view.php?id=CVE-2017-5709
21 Nov 2017 — Multiple privilege escalations in kernel in Intel Server Platform Services Firmware 4.0 allows unauthorized process to access privileged content via unspecified vector. Múltiples escalados de privilegios en el kernel en Intel Server Platform Services Firmware 4.0 permiten que un proceso no autorizado acceda a contenidos privilegiados mediante un vector no especificado. A vulnerability in HPE certain Gen10 Servers, DL20 Gen9, ML30 Gen9 and certain Apollo servers with Intel Server Platform Service (SPS) v4.0 ... • http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html •