> Source: [sk121938](https://support.checkpoint.com/results/sk/sk121938)

# sk121938 - Check Point response to CVE-2017-5705 ... CVE-2017-5712 (multiple vulnerabilities in Intel ME and TE)

| Property | Value |
|----------|-------|
| Solution ID | sk121938 |
| Date Created | 2017-12-13 |
| Last Modified | 2018-01-03 |
| Technical Level | General |
| Products | Security Gateway, Security Management Server |
| Versions | R82.10, R82, R81.20, R82.10, R82, R81.20, R82.20 |
| OS | Gaia |

## Symptoms

- * Multiple flaws in Intel ME and Intel TE allows local code execution and privilege escalation.
* More information regarding the vulnerabilities can be found [here](https://security-center.intel.com/advisory.aspx?intelid=intel-sa-00086&languageid=en-fr).

## Solution

Check Point products are **not** vulnerable to the below CVEs. Check Point platforms do not use those versions of ME, SPS, and TXE.

The platforms were checked with BIOS vendor source code and it was confirmed that they are not affected.

<br />

Here is a detailed table of all those CVEs:

|-------------------------------------------------------------------------------|------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|
| CVE ID                                                                        | CVE Title                                                                                                                                                                                                                                                  |
| [CVE-2017-5705](https://www.cve.mitre.org/cgi-bin/cvename.cgi?name=2017-5705) | Multiple buffer overflows in kernel in Intel Manageability Engine Firmware 11.0/11.5/11.6/11.7/11.10/11.20 allow attacker with local access to the system to execute arbitrary code.                                                                       |
| [CVE-2017-5706](https://www.cve.mitre.org/cgi-bin/cvename.cgi?name=2017-5706) | Multiple buffer overflows in kernel in Intel Server Platform Services Firmware 4.0 allow attacker with local access to the system to execute arbitrary code.                                                                                               |
| [CVE-2017-5707](https://www.cve.mitre.org/cgi-bin/cvename.cgi?name=2017-5707) | Multiple buffer overflows in kernel in Intel Trusted Execution Engine Firmware 3.0 allow attacker with local access to the system to execute arbitrary code.                                                                                               |
| [CVE-2017-5708](https://www.cve.mitre.org/cgi-bin/cvename.cgi?name=2017-5708) | Multiple privilege escalations in kernel in Intel Manageability Engine Firmware 11.0/11.5/11.6/11.7/11.10/11.20 allow unauthorized process to access privileged content via unspecified vector.                                                            |
| [CVE-2017-5709](https://www.cve.mitre.org/cgi-bin/cvename.cgi?name=2017-5709) | Multiple privilege escalations in kernel in Intel Server Platform Services Firmware 4.0 allows unauthorized process to access privileged content via unspecified vector.                                                                                   |
| [CVE-2017-5710](https://www.cve.mitre.org/cgi-bin/cvename.cgi?name=2017-5710) | Multiple privilege escalations in kernel in Intel Trusted Execution Engine Firmware 3.0 allows unauthorized process to access privileged content via unspecified vector.                                                                                   |
| [CVE-2017-5711](https://www.cve.mitre.org/cgi-bin/cvename.cgi?name=2017-5711) | Multiple buffer overflows in Active Management Technology (AMT) in Intel Manageability Engine Firmware 8.x/9.x/10.x/11.0/11.5/11.6/11.7/11.10/11.20 allow attacker with local access to the system to execute arbitrary code with AMT execution privilege. |
| [CVE-2017-5712](https://www.cve.mitre.org/cgi-bin/cvename.cgi?name=2017-5712) | Buffer overflow in Active Management Technology (AMT) in Intel Manageability Engine Firmware 8.x/9.x/10.x/11.0/11.5/11.6/11.7/11.10/11.20 allows attacker with remote Admin access to the system to execute arbitrary code with AMT execution privilege.   |

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
