Start a Conversation

Unsolved

This post is more than 5 years old

1357

December 11th, 2017 08:00

Intel vulnerability

Hello all,

On 11/20/2017 Intel published a report on several vulnerabilities affecting several systems that use ME, SPS and TXE. The report is listed here:

security-center.intel.com/advisory.aspx

The tool provided by Intel identifies some of our desktops, the Precision 3620 as well as others, as vulnerable. Intel suggests that Dell will be providing the fix. In looking at the Dell support pages here:

www.dell.com/.../dell-client-statement-on-intel-me-txe-advisory--intel-sa-00086-

Dell states the update for the Precision 3620 was to be released on 12/6/2017, however, I still see nothing as available. Does anyone have an idea on when this fix may be available for download?

Thanks in advance.

10 Elder

 • 

45.2K Posts

December 11th, 2017 12:00

This is a mainly a user-to-user forum and only Dell will know when that update will be released.

So you may have to keep checking the support page...

367 Posts

December 11th, 2017 12:00

I believe this is what you at looking for:

downloads.dell.com/.../Precision_Tower_3620_2.4.2.exe

10 Elder

 • 

45.2K Posts

December 11th, 2017 18:00

Not convinced that BIOS update is the fix for the Intel problem. The BIOS update was released on 10-17-17 but Intel didn't publically announce the latest problem until 11-20-17.

If Dell already had fixed this problem with that BIOS update, I would think their Client Statement -which came out after Intel's public announcement- would indicate that the fix for this problem has already been posted for this specific model.

Besides, the required update for the P3620 is listed as an MEFW update (Management Engine firmware update) not as a BIOS update, likely meaning the code that needs fixing is on the chipset chip which is separate from BIOS.

Notice that the P5520 is listed as needing a BIOS update in Dell's Client Statement, while all the other Precisions need an update listed as "MEFW". So there clearly is a difference between a BIOS update and a ME firmware update. It all depends on where that defective code is stored and that varies from model to model...

9 Legend

 • 

47K Posts

December 12th, 2017 08:00

You have to have INTEL VPRO, INTEL TRUSTED EXECUTION, INTEL IAMT.

There are versions of the system that have this disabled by default.

https://downloadcenter.intel.com/download/26755

 

The INTEL-SA-00075 Detection and Mitigation Tool will assist with detection and mitigation of the security vulnerability described in INTEL-SA-00075. Read the Public Security Advisory for more information.

 

No Events found!

Top