Unset Write Protection Lock Bit Vulnerability in Lenovo and IBM System x Servers

Unset Write Protection Lock Bit Vulnerability in Lenovo and IBM System x Servers

CVE-2018-9085 · MEDIUM Severity

AV:N/AC:L/AU:S/C:N/I:P/A:N

A write protection lock bit was left unset after boot on an older generation of Lenovo and IBM System x servers, potentially allowing an attacker with administrator access to modify the subset of flash memory containing Intel Server Platform Services (SPS) and the system Flash Descriptors.

Learn more about our Cis Benchmark Audit For Ibm I.