← Vulnerability feed

Vulnerability record · CVE-2017-5703 · published 3 April 2018

CVE-2017-5703: Intel core i7-8550u improper privilege management vulnerability

Intel · Core I7 8550u

Configuration of SPI Flash in platforms based on multiple Intel platforms allow a local attacker to alter the behavior of the SPI flash potentially leading to a Denial of Service.

6.0 CVSS 3.0 Medium EPSS 0.34% · top 75.6% CWE-269 · Improper privilege management
6.0CVSS 3.0 base score, v2 3.6
0.34%EPSS exploitation probability, 30 days
NoNot in CISA KEV
150Affected product versions listed by NVD
8References
17 Jun 2026Last modified by NVD

Description

Configuration of SPI Flash in platforms based on multiple Intel platforms allow a local attacker to alter the behavior of the SPI flash potentially leading to a Denial of Service.

CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H

Affected products

150 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2017-5703 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

8.8CVE-2020-24489Intel atom x5-e3930 vulnerabilityIncomplete cleanup in some Intel(R) VT-d products may allow an authenticated user to potentially enable escalation of privilege via local access.EPSS 0.35%7.8CVE-2020-0559Intel ac 3165 firmware incorrect permission assignment vulnerabilityInsecure inherited permissions in some Intel(R) PROSet/Wireless WiFi products on Windows* 7 and 8.1 before version 21.40.5.1 may allow an authenticat…EPSS 0.29%6.8CVE-2021-33150Intel atom c2308 vulnerabilityHardware allows activation of test or debug logic at runtime for some Intel(R) Trace Hub instances which may allow an unauthenticated user to potenti…EPSS 0.35%6.5CVE-2022-0002Intel atom c3308 vulnerabilityNon-transparent sharing of branch predictor within a context in some Intel(R) Processors may allow an authorized user to potentially enable informati…EPSS 0.45%5.6CVE-2020-0551Intel atom c2308 vulnerabilityLoad value injection in some Intel(R) Processors utilizing speculative execution may allow an authenticated user to potentially enable information di…EPSS 1.0%5.6CVE-2017-5715Intel CPUs speculative execution side-channel information disclosureCVE-2017-5715 is the Spectre variant 2 flaw in Intel microprocessors that use speculative execution and indirect branch prediction. A local attacker …EPSS 74%analysed5.6CVE-2017-5753Intel CPUs speculative execution side-channel information disclosure (Spectre v1)CVE-2017-5753 is a speculative execution and branch prediction side-channel flaw in Intel microprocessors that can leak information through observabl…EPSS 94%analysed5.5CVE-2019-14615Canonical ubuntu linux vulnerabilityInsufficient control flow in certain data structures for some Intel(R) Processors with Intel(R) Processor Graphics may allow an unauthenticated user …EPSS 1.4%

Source: NIST National Vulnerability Database (record CVE-2017-5703), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.