Intel Security Vulnerabilities Regarding Intel® Management Engine (ME), Intel® Server Platform Services (SPS), and Intel® Trusted Execution Engine (TXE)



Document ID: 4015909

 

Posted Date: 2017-11-22

 

Last Updated: 2017-11-22

 

Distribution: View Public Website

 

Issue

 

Intel Security Vulnerabilities Regarding Intel® Management Engine (ME), Intel® Server Platform Services (SPS), and Intel® Trusted Execution Engine (TXE)

NOTICE: The information in this Security Bulletin should be acted upon as soon as possible.

Source: Intel® Article ID: 000025619 (Intel SA-00086)

Potential Security Impact: Toshiba is aware of the Intel® ME/TXE Elevation of privileges vulnerability, and we are diligently working to provide updates for all impacted models. The security and privacy of customers' information are priorities for Toshiba. Toshiba is working closely with Intel to address the situation and are working to release firmware updates to fix the security vulnerability.  Firmware update details for these platforms will be added to this document as they become available and we recommend customers update their systems to the latest Intel Management Engine Firmware and iCLS Software by downloading the updates as they become available.

Toshiba highly recommends system owners ensure that systems are physically secured where possible, and follow good security practices to ensure that only authorized personnel have hands-on access to devices.

In addition, Toshiba encourages customers to review Intel’s Security Advisory for information, including appropriate identification and mitigation measures. To determine if the identified vulnerabilities impacts your system, download and run the Intel-SA-00086 Detection tool using the links below.

Available resources

Resolution

 

Firmware Release Details:

  • Dates in this list are provided for customer planning purposes and will be updated with links to downloadable packages when available.
  • Check Table below to see if your system has been impacted and the vulnerability update is available.
    • No actions are required if you system is not listed.
  • Download and install the latest firmware update.
    • The systems below are affected and will require the Intel firmware update. 

 

Toshiba’s ME Firmware Release Schedule:

CPU Generation Full Family Name Model Family Number Target Available Date Link to Firmware
7th
Generation
PORTEGE A30-D PT381 TBD  
PT383
PT385
PORTEGE X20W-D PRT12
PRT13
PORTEGE X30-D PT272
PT274
SATELLITE PRO A30-D PT382
SATELLITE PRO A40-D PS482
SATELLITE PRO A50-D PS585
PS586
SATELLITE PRO R50-D PS582
TECRA A40-D PS486
TECRA A50-D PS589
PS58A
PS58B
PT583
TECRA C40-D PS481
PS483
PS485
TECRA C50-D PS581
TECRA X40-D PT472
PT474
TECRA Z50-D PT581

 

CPU Generation Full Family Name Model Family Number Target Available Date Link to Firmware
6th
Generation
PORTEGE A30-C PT363 TBD  
PT365
PORTEGE A30T-C PT361
PORTEGE DYNAEDGE POC11
PORTEGE WT20-C PT16C
PORTEGE Z20T-C PT16A
PORTEGE Z30-C PT16B
PORTEGE Z30-C PT261
PORTEGE Z30-C PT263
SATELLITE A40-C PS462
SATELLITE C50-C PSCPS
PSCPW
SATELLITE C55-C PSKW3
PSKWX
SATELLITE C70-C PSCSS
SATELLITE L40W-C PSLZB
SATELLITE L50-C PSKW2
PSKW6
PSKWW
SATELLITE L50T-C PSKWY
SATELLITE L50W-C PSLRB
SATELLITE L70-C PSKZG
PSKZJ
SATELLITE P20W-C PSPVV
SATELLITE P50-C PSPUF
SATELLITE P50W-C PSPVT
SATELLITE PRO A50-C PS575
PS57D
PS57E
PS576
SATELLITE PRO C70-C PSCSP
PSCST
SATELLITE PRO R50-C PS572
SATELLITE S50-C PSPT2
PSPT6
PSPTW
PSPUE
SATELLITE S50T-C PSPT4
PSPT8
PSPTY
PSPUG
SATELLITE Z30-C PT265
TECRA A40-C PS463
PS464
TECRA A50-C PS579
PS57B
PS57H
PS57K
PT571
PT573
PS57A
TECRA C40-C PS461
PS465
TECRA C50-C PS571
TECRA R50-C PS573
TECRA Z40-C PT461
PT463
PT465
TECRA Z50-C PT577

 

CPU Generation Full Family Name Model Family Number Target Available Date Link to Firmware
5th
Generation
PORTEGE Z20T-B PT15B TBD  
PORTEGE Z30-B PT251
TECRA A50-C PS56D
PS56M
TECRA Z40-B PT459
PT45G

 

CPU Generation Full Family Name Model Family Number Target Available Date Link to Firmware
4th
Generation
PORTEGE R30-A PT341 TBD  
PORTEGE Z10T-A PT142
PORTEGE Z30-A PT241
PT24A
TECRA A50-A PT641
PT645
TECRA W50-A1000 PT640
TECRA Z40-A PT449
PT44G
TECRA Z50-A PT540
PT545
TOSHIBA WT310 PT144

 

CPU Generation Full Family Name Model Family Number Target Available Date Link to Firmware
3rd
Generation
PORTEGE R930 PT331 TBD  
PT333
PORTEGE Z10T PT132
PORTEGE Z930 PT235
PT237
SATELLITE PRO S850 PSSET
TECRA R940 PT439
PT43G
TECRA R950 PT530
PT535
TOSHIBA WT310 PT134

 

* The information in this document is subject to change without notice.
* "Intel" is a trademark of Intel Corporation in the U.S. and other countries.
* Other names and brands may be claimed as the property of others.

 

Export Control and EULA
Use of any software made available for download from this system constitutes your acceptance of the Export Control Terms and the terms in the Toshiba end-user license agreement both of which you can view before downloading any such software.