CVE-2009-0066
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Multiple unspecified vulnerabilities in Intel system software for Trusted Execution Technology (TXT) allow attackers to bypass intended loader integrity protections, as demonstrated by exploitation of tboot. NOTE: as of 20090107, the only disclosure is a vague pre-advisory with no actionable information. However, because it is from a well-known researcher, it is being assigned a CVE identifier for tracking purposes.
Múltiples vulnerabilidades sin especificar en Intel system software para Trusted Execution Technology (TXT) permite a atacantes remotos evitar las protecciones de integridad del cargador previstas, como se demostró con la explotación de tboot. NOTA: a fecha de 07-01-2009, la única revelación es un pre-aviso impreciso sin información de uso inmediato. De todos modos, ya que viene de un investigador bien conocido, se le ha asignado un identificador CVE por motivos de seguimiento.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2009-01-07 CVE Reserved
- 2009-01-07 CVE Published
- 2024-09-17 CVE Updated
- 2024-09-17 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (4)
URL | Tag | Source |
---|---|---|
http://blackhat.com/html/bh-dc-09/bh-dc-09-speakers.html#Wojtczuk | X_refsource_misc | |
http://invisiblethingslab.com/press/itl-press-2009-01.pdf | X_refsource_misc | |
http://theinvisiblethings.blogspot.com/2009/01/attacking-intel-trusted-execution.html | X_refsource_misc | |
http://www.securityfocus.com/bid/33119 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Intel Search vendor "Intel" | Trusted Execution Technology Search vendor "Intel" for product "Trusted Execution Technology" | _nil_ Search vendor "Intel" for product "Trusted Execution Technology" and version "_nil_" | - |
Affected
|