cancel
Showing results for 
Search instead for 
Did you mean: 

GL502VT ME vulnerable

Venumz
Level 7
Hi all,
any news on how to update the ME for this model?

Below I have attached the output of the INTEL-SA-00086 Detection Tool

./intel_sa00086.py
INTEL-SA-00086 Detection Tool
Copyright(C) 2017, Intel Corporation, All rights reserved

Application Version: 1.0.0.146
Scan date: 2017-12-14 12:43:19 GMT

*** Host Computer Information ***
Name: xxxxxxx
Manufacturer: ASUSTeK COMPUTER INC.
Model: GL502VT
Processor Name: Intel(R) Core(TM) i7-6700HQ CPU @ 2.60GHz
OS Version: LinuxMint 18.1 serena (4.11.0-14-generic)

*** Intel(R) ME Information ***
Engine: Intel(R) Management Engine
Version: 11.0.0.1180
SVN: 1

*** Risk Assessment ***
Based on the analysis performed by this tool: This system is vulnerable.
Explanation:
The detected version of the Intel(R) Management Engine firmware
is considered vulnerable for INTEL-SA-00086.
Contact your system manufacturer for support and remediation of this system.

For more information refer to the INTEL-SA-00086 Detection Tool Guide or the
Intel Security Advisory Intel-SA-00086 at the following link:
https://www.intel.com/sa-00086-support
1,679 Views
2 REPLIES 2

Venumz
Level 7
Well, it's clear that Asus don't care about anything other than actually sell their stuff.
If you have a problem they just might show you the middle finger and tell you to RMA your hardware, no matter if you have to wait a couple of months (why the hell should you need your hardware so much that you cannot leave it to Asus for at least 2 months?).

You guys sell broken stuff. An issue like the one that motivated my post should have been taken care of ASAP without the need of final users like me making posts asking for help.

Not only this post have got zero responses, but no visible effort to address this and other issues is noticeable in the product support page:

https://www.asus.com/ROG-Republic-Of-Gamers/ROG-GL502VT/HelpDesk_BIOS/

The last bios listed there for this model is version 300 (2017/09/11) and no ME firmware update is available. By the way this is bull**** since I have got this bios version flashed on 2017/05/05 and who knows when was it released.

Venumz wrote:
Well, it's clear that Asus don't care about anything other than actually sell their stuff.
Not only this post have got zero responses, but no visible effort to address this and other issues is noticeable in the product support page


It seems to be too categorical. Yes, there is no GL502VT here, but still.

Anyway, in terms of Intel Management Engine vulnerability, most end users seem to have less to worry about.