<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1">
<style type="text/css" style="display:none;"><!-- P {margin-top:0;margin-bottom:0;} --></style>
</head>
<body dir="ltr">
<div id="divtagdefaultwrapper" style="font-size:12pt;color:#000000;font-family:Calibri,Arial,Helvetica,sans-serif;">
<p>so someone with root privileges who logs in locally could take over the machine?</p>
<p><br>
</p>
<p>I'm guessing local admin is more of a Windows concept.</p>
<br>
<br>
<div style="color: rgb(0, 0, 0);">
<hr tabindex="-1" style="display:inline-block; width:98%">
<div id="divRplyFwdMsg" dir="ltr"><font face="Calibri, sans-serif" color="#000000" style="font-size:11pt"><b>From:</b> aholt888@gmail.com <aholt888@gmail.com> on behalf of Adam Holt <holt@laptop.org><br>
<b>Sent:</b> Monday, October 10, 2016 9:55 AM<br>
<b>To:</b> xsce-devel; server-devel<br>
<b>Subject:</b> [XSCE] NUCs Vulnerable to SMM Exploit (System Management Mode)</font>
<div> </div>
</div>
<div>
<p dir="ltr">"pretty much all NUCs from 2015 and 2016 are vulnerable to this.</p>
<p dir="ltr">The issue has been fixed in the BIOS versions that were released earlier in September..."</p>
<p dir="ltr"><a href="http://nucblog.net/2016/10/security-nucs-vulnerable-to-smm-exploit/" id="LPlnk448318" previewremoved="true">http://nucblog.net/2016/10/security-nucs-vulnerable-to-smm-exploit/</a></p>
<div id="LPBorder_GT_14761181511040.45942090052499496" style="margin-bottom: 20px; overflow: auto; width: 100%; text-indent: 0px;">
<table id="LPContainer_14761181511000.051423287095347936" cellspacing="0" style="width: 90%; background-color: rgb(255, 255, 255); position: relative; overflow: auto; padding-top: 20px; padding-bottom: 20px; margin-top: 20px; border-top: 1px dotted rgb(200, 200, 200); border-bottom: 1px dotted rgb(200, 200, 200);">
<tbody>
<tr valign="top" style="border-spacing: 0px;">
<td id="TextCell_14761181511040.46536903355881165" colspan="2" style="vertical-align: top; position: relative; padding: 0px; display: table-cell;">
<div id="LPRemovePreviewContainer_14761181511040.13063840135066518"></div>
<div id="LPTitle_14761181511040.25075795190203487" style="top: 0px; color: rgb(0, 120, 215); font-weight: normal; font-size: 21px; font-family: wf_segoe-ui_light, "Segoe UI Light", "Segoe WP Light", "Segoe UI", "Segoe WP", Tahoma, Arial, sans-serif; line-height: 21px;">
<a id="LPUrlAnchor_14761181511040.6675760112081923" href="http://nucblog.net/2016/10/security-nucs-vulnerable-to-smm-exploit/" target="_blank" style="text-decoration: none;">Security Alert: NUCs Vulnerable to SMM Exploit - The NUC Blog</a></div>
<div id="LPMetadata_14761181511040.997994372521025" style="margin: 10px 0px 16px; color: rgb(102, 102, 102); font-weight: normal; font-family: wf_segoe-ui_normal, "Segoe UI", "Segoe WP", Tahoma, Arial, sans-serif; font-size: 14px; line-height: 14px;">
nucblog.net</div>
<div id="LPDescription_14761181511040.22309960427134579" style="display: block; color: rgb(102, 102, 102); font-weight: normal; font-family: wf_segoe-ui_normal, "Segoe UI", "Segoe WP", Tahoma, Arial, sans-serif; font-size: 14px; line-height: 20px; max-height: 100px; overflow: hidden;">
Intel has released on Monday a security advisory regarding a flaw in the Intel NUC BIOS. This flaw allows a user with local administrative right to access the system management mode (SMM) and take...</div>
</td>
</tr>
</tbody>
</table>
</div>
<br>
<p dir="ltr"><a href="http://www.fanlesstech.com/2016/10/alert-major-nuc-security-flaw.html" id="LPlnk201858" previewremoved="true">http://www.fanlesstech.com/2016/10/alert-major-nuc-security-flaw.html</a></p>
<div id="LPBorder_GT_14761181511150.7796211961708805" style="margin-bottom: 20px; overflow: auto; width: 100%; text-indent: 0px;">
<table id="LPContainer_14761181511120.9003812159548568" cellspacing="0" style="width: 90%; background-color: rgb(255, 255, 255); position: relative; overflow: auto; padding-top: 20px; padding-bottom: 20px; margin-top: 20px; border-top: 1px dotted rgb(200, 200, 200); border-bottom: 1px dotted rgb(200, 200, 200);">
<tbody>
<tr valign="top" style="border-spacing: 0px;">
<td id="ImageCell_14761181511130.9299517284054137" colspan="1" style="width: 250px; position: relative; display: table-cell; padding-right: 20px;">
<div id="LPImageContainer_14761181511130.10234273034859309" style="background-color: rgb(255, 255, 255); height: 131px; position: relative; margin: auto; display: table; width: 250px;">
<a id="LPImageAnchor_14761181511140.22089863211417526" href="http://www.fanlesstech.com/2016/10/alert-major-nuc-security-flaw.html" target="_blank" style="display: table-cell; text-align: center;"><img aria-label="Preview image with link selected. Double-tap to open the link." id="LPThumbnailImageID_14761181511140.8568381955630087" width="250" height="131" style="display: inline-block; max-width: 250px; max-height: 250px; height: 131px; width: 250px; border-width: 0px; vertical-align: bottom;" src="https://3.bp.blogspot.com/-9H0ehzTKRBY/V_QfMfS-LzI/AAAAAAAALRc/xIuOwXQra2oJvgy1sPzIHsKDb5dkac2zACLcB/w1200-h630-p-nu/nuc.jpg"></a></div>
</td>
<td id="TextCell_14761181511140.06064598014337119" colspan="2" style="vertical-align: top; position: relative; padding: 0px; display: table-cell;">
<div id="LPRemovePreviewContainer_14761181511140.7814218457430402"></div>
<div id="LPTitle_14761181511140.8740125046682252" style="top: 0px; color: rgb(0, 120, 215); font-weight: normal; font-size: 21px; font-family: wf_segoe-ui_light, "Segoe UI Light", "Segoe WP Light", "Segoe UI", "Segoe WP", Tahoma, Arial, sans-serif; line-height: 21px;">
<a id="LPUrlAnchor_14761181511150.19203032961199562" href="http://www.fanlesstech.com/2016/10/alert-major-nuc-security-flaw.html" target="_blank" style="text-decoration: none;">ALERT: Major NUC security flaw</a></div>
<div id="LPMetadata_14761181511150.2212367778835953" style="margin: 10px 0px 16px; color: rgb(102, 102, 102); font-weight: normal; font-family: wf_segoe-ui_normal, "Segoe UI", "Segoe WP", Tahoma, Arial, sans-serif; font-size: 14px; line-height: 14px;">
www.fanlesstech.com</div>
<div id="LPDescription_14761181511150.5195820931151995" style="display: block; color: rgb(102, 102, 102); font-weight: normal; font-family: wf_segoe-ui_normal, "Segoe UI", "Segoe WP", Tahoma, Arial, sans-serif; font-size: 14px; line-height: 20px; max-height: 100px; overflow: hidden;">
Intel is releasing updated BIOS firmware for a privilege escalation issue. This issue affects Intel NUC Kits listed in the affected produ...</div>
</td>
</tr>
</tbody>
</table>
</div>
<br>
</div>
</div>
</div>
</body>
</html>