Security information about
Intel® Management Engine (ME) firmware
Updated: Nov 20, 2018
Intel published security information of cumulative vulnerabilities of Intel® ME Firmware.
We will show the information below.
Please be advised that the information will be changed or added without notice.

Vulnerability summary
Details are explained in the sites below.
Intel® Product Security Center Advisories (INTEL-SA-00086)

Content of countermeasure
Please confirm the target model, and confirm the release schedule of countermeasure module.
ME Firmware and ME driver
It affects only when using the Intel® Active Management Technology (AMT) function via wireless LAN.
This function is disabled at the time of shipment and it will not be enabled unless you change the BIOS setting.
Countermeasure module was released in some models.
Group | Target model | OS | Countermeasure module |
---|---|---|---|
1 | CF-33 | CF-33[A/B/C/L/M/N/V/W]****** (mk1) |
Released on March 9, 2018 Updated on July 10, 2018 |
CF-54 | CF-54[G/H/J]****** (mk3) |
Released on March 9, 2018 Updated on July 10, 2018 |
|
CF-LX6 | CF-LX6YDAZTM (mk3) |
Released on March 9, 2018 Updated on July 10, 2018 |
|
CF-SZ6 | CF-SZ6R***** (mk2) |
Released on March 9, 2018 Updated on July 10, 2018 |
|
CF-XZ6 | CF-XZ6R***** (mk1) |
Released on March 9, 2018 Updated on July 10, 2018 |
|
2 | CF-20 | CF-20[A/B/C/D]****** (mk1) |
Released on February 15, 2018 Updated on August 28, 2018 |
CF-33 | CF-33[D/E/P/Q]****** (mk1) |
Released on February 15, 2018 Updated on August 28, 2018 |
|
CF-54 | CF-54[D/E/F]****** (mk2) |
Released on February 15, 2018 Updated on August 28, 2018 |
|
CF-D1 | CF-D1[N/Q]****** (mk3) |
Released on February 15, 2018 Updated on August 28, 2018 |
|
FZ-G1 | FZ-G1[P/Q/R]****** (mk4) |
Released on February 15, 2018 Updated on August 28, 2018 |
|
FZ-M1 | FZ-M1F******, FZ-M1ECF***R (mk2) |
Released on February 15, 2018 Updated on August 28, 2018 |
|
FZ-Q2 | FZ-Q2[F/G]****** (mk1) |
Released on February 27, 2018 Updated on August 28, 2018 |
|
3 | CF-31 | CF-31[1/2/3/4]****** (mk5) *1 |
Released on April 2, 2018 Updated on September 25, 2018 Only AMT user will be affected by this vulnerability. |
CF-54 | CF-54[A/B/C]****** (mk1) | ||
CF-MX4 | CF-MX4E***** (mk1) *2 | ||
CF-SX4 | CF-SX4E***** (mk1) | ||
FZ-G1 | FZ-G1[J/K/L/M/N]****** (mk3) *3 | ||
FZ-Y1 | FZ-Y1[C/D]****** (mk2) | ||
4 | CF-53 | CF-53[2/3/4/5/7]****** (mk4) |
Released on April 25, 2018 Updated on October 30, 2018 Only AMT user will be affected by this vulnerability. |
CF-AX3 | CF-AX3E***** (mk2) | ||
CF-C2 | CF-C2[C/D]****** (mk2/mk2.5) | ||
CF-LX3 | CF-LX3J***** (mk3) | ||
CF-LX3E***** (mk2) | |||
FZ-G1 | FZ-G1F****** (mk2) | ||
FZ-M1 | FZ-M1C****** (mk1) *8 | ||
FZ-Q1 | FZ-Q1C****** (mk1) | ||
5 | CF-19 | CF-19Z****** (mk8) *4 |
Released on November 20, 2018 Only AMT user will be affected by this vulnerability. |
CF-19[5/6/8/9]****** (mk7) | |||
CF-19[0/1/2/3]****** (mk6) *5 | |||
CF-31 | CF-31[W/X]****** (mk4) *6 | ||
CF-31[S/U]****** (mk3) *7 | |||
CF-52 | CF-52V****** (mk5) | ||
CF-53 | CF-53[S/T/U/V]****** (mk3) | ||
CF-53[J/K/M]****** (mk2) | |||
CF-AX2 | CF-AX2L***** (mk1) | ||
CF-C2 | CF-C2A****** (mk1) | ||
CF-D1 | CF-D1G****** (mk2) | ||
CF-H2 | CF-H2[P/Q/S]****** (mk3) | ||
CF-H2[F/G/H]****** (mk2) | |||
CF-SX2 | CF-SX2J***** (mk1) | ||
FZ-G1 | FZ-G1[A/B/C]****** (mk1) | ||
UT-MA6 | UT-MA6****** (mk1) | ||
UT-MB5 | UT-MB5****** (mk1) | ||
6 | CF-19 | CF-19[7/A/B/X/Y]****** (mk5) *9 |
No firmware update from Intel Only AMT user will be affected by this vulnerability. Intel will not release any mitigation for this vulnerability. |
CF-19[R/S/T/V/W]****** (mk4) | |||
CF-31 | CF-31[J/K/P/R/T]****** (mk2) | ||
CF-31[A/B/D/F]****** (mk1) | |||
CF-52 | CF-52[S/T]****** (mk4) | ||
CF-52[M/N/P/Q/R]****** (mk3) | |||
CF-53 | CF-53[A/B/C/D]****** (mk1) | ||
CF-C1 | CF-C1[B/L]****** (mk2) | ||
CF-C1[A/K]****** (mk1) | |||
CF-D1 | CF-D1A****** (mk1) | ||
CF-F9 | CF-F9K***** (mk2) | ||
CF-H2 | CF-H2[A/B]****** (mk1) | ||
CF-S10 | CF-S10C***** (mk2) | ||
CF-S9 | CF-S9K***** (mk2) |
* If there is any error while updating this patch, please contact your regional field support engineer for further assistance.
*1 Except for the following model number.
CF-311T015VM, CF-311T501VM, CF-311T502VM, CF-311T505VM, CF-311T011VM, CF-311T512VM,
CF-311T601VM, CF-311T042VM, CF-311T517VM, CF-3114-00VM, CF-311T518VM, CF-3118488KM,
CF-3118-05CM, CF-3118268KM, CF-3118370VM, CF-3110559KM, CF-3118260KM, CF-3118258KM,
CF-3118369KM, CF-3121110ZM, CF-3120999VM, CF-3120-01CM, CF-3120448ZM, CF-3118150CM,
CF-3120999CM, CF-3118259CM, CF-3118258CM, CF-3118369CM, CF-3110559CM, CF-3118149CM,
CF-3118260CM, CF-3121109ZM, CF-3118268CM
*2 Except for CF-MX4E****R (Chinese model)
*3 Except for FZ-G1J0580BM, FZ-G1J6774CM, FZ-G1J6794KM, FZ-G1J6795KM
*4 Except for the following model number.
CF-19ZF865BM, CF-19ZF865CM, CF-19ZFP737M, CF-19ZFP937X, CF-19ZZ001E8, CF-19ZZ001ER,
CF-19ZZ001MQ, CF-19ZZ001Z9, CF-19ZZ004ZZ, CF-19ZZA01MW, CF-19ZZA05MW, CF-19ZZA07MW,
CF-19ZZA10MW, CF-19ZZAZZMZ, CF-19ZZB22MW, CF-19ZZP51MR
*5 Except for CF-193H2E9FW, CF-193HA6EFF, CF-193HA8UFR, CF-193HAAZZZ
*6 Except for the following model number.
CF-31XML55CM, CF-31XML55LM, CF-31WML51CM, CF-31WML51LM, CF-31WML58CM, CF-31WML58LM,
CF-31WML45DM, CF-31WML451M, CF-31WML21DM, CF-31WML211M, CF-31WFL2NCM, CF-31WFL2NLM,
CF-31WFL52CM, CF-31WFL52LM, CF-31WFL53CM, CF-31WFL53LM
*7 Except for the following model number.
CF-31SML25DM, CF-31SML251M, CF-31UML59DM, CF-31UML591M, CF-31SUL3HDM, CF-31SUL3H1M
*8 Except for FZ-M1CF314CM, FZ-M1CF315CM, FZ-M1CF0AZCM
*9 Except for the following model number.
CF-19AWUAXDM, CF-19BTJDX2M, CF-19BTJDXPM, CF-19AWNAXF3, CF-19BNUZX1M, CF-19BNUZXDM,
CF-19BTUDX1M, CF-19BTUDXDM, CF-19BTUZX1M, CF-19BTUZXDM, CF-19BUUFX1M, CF-19BUUFXDM,
CF-19BVUDX1M, CF-19BVUDXDM, CF-19BVUFXDM, CF-19BVVFX1M, CF-19BVVFXDM
*10 Except for the following model number.
CF-31JEG57DM, CF-31JEG571M, CF-31K1*****, CF-31K5*****