ASRock.com Homepage
Forum Home Forum Home > Technical Support > Intel Motherboards
  New Posts New Posts RSS Feed - Intel Management Engine Issue INTEL-SA-00086 Fix
  FAQ FAQ  Forum Search Search  Events   Register Register  Login Login

Topic ClosedIntel Management Engine Issue INTEL-SA-00086 Fix

 Post Reply Post Reply Page  <1 678910 13>
Author
Message Reverse Sort Order
s7cGamer View Drop Down
Newbie
Newbie


Joined: 08 Jan 2018
Status: Offline
Points: 1
Direct Link To This Post Posted: 08 Jan 2018 at 2:50am
I have this motherboard as well, no BIOS updates available.


Originally posted by Hackerpcs Hackerpcs wrote:

Is there any fix for my 2nd Generation i5 (Sandy Bridge) board (B75 Pro3-M)?
INTEL-SA-00086 Detection Tool
Application Version: 1.0.0.152
Computer Name:
Scan date: 6/1/2018 5:19:04 μμ

*** Host Computer Information ***
Manufacturer: To Be Filled By O.E.M.
Model: To Be Filled By O.E.M.
Processor Name: Intel(R) Core(TM) i5-2500K CPU @ 3.30GHz
OS Version: Microsoft Windows 7 Ultimate

*** Intel(R) ME Information ***
Engine: Intel(R) Management Engine
Version: 8.1.0.1265
SVN: 1

*** Risk Assessment ***
Based on the analysis performed by this tool: This system is vulnerable.
Explanation:
The detected version of the Intel(R) Management Engine firmware is considered vulnerable for INTEL-SA-00086.
Contact your system manufacturer for support and remediation of this system.

For more information refer to the SA-00086 Detection Tool Guide or the Intel security advisory Intel-SA-00086 at the following link: https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00086&languageid=en-fr
Copyright(C) 2017, Intel Corporation, All rights reserved.
Back to Top
ABS View Drop Down
Newbie
Newbie
Avatar

Joined: 06 Jan 2018
Location: PA
Status: Offline
Points: 2
Direct Link To This Post Posted: 08 Jan 2018 at 1:33am
ok that makes sense.  
Back to Top
Hackerpcs View Drop Down
Newbie
Newbie


Joined: 06 Jan 2018
Status: Offline
Points: 8
Direct Link To This Post Posted: 07 Jan 2018 at 3:44am
Is there any fix for my 2nd Generation i5 (Sandy Bridge) board (B75 Pro3-M)?
INTEL-SA-00086 Detection Tool
Application Version: 1.0.0.152
Computer Name:
Scan date: 6/1/2018 5:19:04 μμ

*** Host Computer Information ***
Manufacturer: To Be Filled By O.E.M.
Model: To Be Filled By O.E.M.
Processor Name: Intel(R) Core(TM) i5-2500K CPU @ 3.30GHz
OS Version: Microsoft Windows 7 Ultimate

*** Intel(R) ME Information ***
Engine: Intel(R) Management Engine
Version: 8.1.0.1265
SVN: 1

*** Risk Assessment ***
Based on the analysis performed by this tool: This system is vulnerable.
Explanation:
The detected version of the Intel(R) Management Engine firmware is considered vulnerable for INTEL-SA-00086.
Contact your system manufacturer for support and remediation of this system.

For more information refer to the SA-00086 Detection Tool Guide or the Intel security advisory Intel-SA-00086 at the following link: https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00086&languageid=en-fr
Copyright(C) 2017, Intel Corporation, All rights reserved.
Back to Top
dbeachy1 View Drop Down
Newbie
Newbie


Joined: 05 Jan 2018
Status: Offline
Points: 4
Direct Link To This Post Posted: 07 Jan 2018 at 12:55am
Originally posted by ABS ABS wrote:

Funny thing.

I installed corporate version of 11.8.50.3425 (H170m Pro4, i3-6100, Win10 Home 64bit).  The uefi and Intel SA-00086 detection tool both confirm the update.  However in Device Manager the Intel Management Engine Interface still shows the old driver (11.6.0.1026).  

Any thoughts?


As I understand it, the version of the ME driver software / driver in Windows (installed via a package named "Intel(R) Management Engine Components" in my add/remove programs) is the Windows driver version, which is a different piece of software from the actual firmware that resides in the CPU.  For example, on my system here, Device Manager shows my ME Windows driver as version 11.7.0.1017, but the ME firmware installed on my i9-7900X CPU is 11.10.0.1287.  Installing the new firmware patch from ASrock does not update the Windows drivers for ME, just the firmware itself on the CPU.  Does that make sense?
Back to Top
psy View Drop Down
Newbie
Newbie


Joined: 06 Jan 2018
Status: Offline
Points: 1
Direct Link To This Post Posted: 06 Jan 2018 at 11:44pm
Hello, i have the B85M-ITX motherboard with a i5 4670k (latest bios 2.50) and the intel utility reports that my system is affected by this bug, there will be some bios update from asrock ? thank you.
Back to Top
ABS View Drop Down
Newbie
Newbie
Avatar

Joined: 06 Jan 2018
Location: PA
Status: Offline
Points: 2
Direct Link To This Post Posted: 06 Jan 2018 at 11:33pm
Funny thing.

I installed corporate version of 11.8.50.3425 (H170m Pro4, i3-6100, Win10 Home 64bit).  The uefi and Intel SA-00086 detection tool both confirm the update.  However in Device Manager the Intel Management Engine Interface still shows the old driver (11.6.0.1026).  

Any thoughts?
Back to Top
jclausius View Drop Down
Newbie
Newbie


Joined: 02 Jan 2018
Location: USA
Status: Offline
Points: 37
Direct Link To This Post Posted: 06 Jan 2018 at 3:51am
While I think the patch from ASRock will go to patch Management Engine, the other patches you'll have to apply will need to come from your OS vendor (Microsoft or Linux).
Back to Top
tsunami2311 View Drop Down
Newbie
Newbie


Joined: 19 Jun 2016
Status: Offline
Points: 63
Direct Link To This Post Posted: 06 Jan 2018 at 3:34am
just did http://asrock.pc.cdn.bitgravity.com/TSD/ME-consumer_11.8.50.3425.zip
on my z170 extreme 4 it now says i am patched but also goes on about some intel license client is obsolete


http://www.guru3d.com/news-story/new-hardware-vulnerability-found-in-intel-processors.html

how much of this Spectre??and ?�Meltdown??br>does this  apply too or am i gona need another fw update update?

Im still using bios update 3.20 i only did this update for the   above, I am assuming if I did the bios update to 7.20 I would have reaplly thew above fix?  i am also assuming asrock is gona release new bios for all this


Edited by tsunami2311 - 06 Jan 2018 at 3:42am
Back to Top
jclausius View Drop Down
Newbie
Newbie


Joined: 02 Jan 2018
Location: USA
Status: Offline
Points: 37
Direct Link To This Post Posted: 06 Jan 2018 at 12:43am
Originally posted by dbeachy1 dbeachy1 wrote:

Some interesting news here -- I heard back from ASRock support tonight, and here is the message:

?============================================

I replied and asked if they know if and when a version of the patch for
the X299 chipset, which is what my motherboard uses, will be available.?

Great work!! Thank you for shedding some light on the whole situation.

Hopefully they'll respond with an x299 version is available soon!! If so, please let us know. Thanks again.

-jclausius

Edited by jclausius - 06 Jan 2018 at 3:52am
Back to Top
dbeachy1 View Drop Down
Newbie
Newbie


Joined: 05 Jan 2018
Status: Offline
Points: 4
Direct Link To This Post Posted: 05 Jan 2018 at 10:03am
Some interesting news here -- I heard back from ASRock support tonight, and here is the message:

 ============================================

From: Support [mailto:<redacted>]
Sent: Thursday, January 04, 2018 7:51 PM
To: <redacted>
Subject: RE: $X299 TAICHI/A/ASRK$ Unable to update to Intel ME 11.8.50.3425 (United States)

 check the information below if your motherboard chipset is effected

 

Intel released the newer ME version to fix the security bug recently.

The models 100/200/300 could be updated ME firmware by ME tool directly.

Please be noted that there are two different ME type for our models.

 

1. Consumer ME

Chipset: Z170, Z270, H110, B250, H270, Z370

Consumer ME link: http://asrock.pc.cdn.bitgravity.com/TSD/ME-consumer_11.8.50.3425.zip

 

2. Corporate ME

Chipset: H170, B150, Q170

Corporate ME link: http://asrock.pc.cdn.bitgravity.com/TSD/ME-corporate_11.8.50.3425.zip

 

Microsite link:

Reference: http://www.asrock.com/microsite/2017IntelFirmware/

 ============================================

I replied and said that I had already tried running that Consumer ME patch version per my original message.  What is interesting, however, is that support said that the consumer ME patch only supports these chipsets:

1. Consumer ME

Chipset: Z170, Z270, H110, B250, H270, Z370

I replied and asked if they know if and when a version of the patch for the X299 chipset, which is what my motherboard uses, will be available. 

So this explains why the patch doesn't work with our X299 boards: the patch doesn't support that chipset.  Unhappy  Hopefully ASRock will make an X299 version of the ME firmware patch available soon.


EDIT:

Also, according to the INTEL-SA-00086 Detection Tool, my Intel Management Engine version is 11.10.0.1287, so clearly the ME version for X299 boards is separate from the ME versions that the ASRock ME patch is supposed to update.

 



Edited by dbeachy1 - 05 Jan 2018 at 11:39pm
Back to Top
 Post Reply Post Reply Page  <1 678910 13>
  Share Topic   

Forum Jump Forum Permissions View Drop Down

Forum Software by Web Wiz Forums® version 12.04
Copyright ©2001-2021 Web Wiz Ltd.

This page was generated in 0.078 seconds.