I dare say that Apple machines are all vulnerable, and are affected in a much more dramatic way than other machines that already have patches available for download at the time of this post. Though at this point I can't confirm or deny that macs run Intel firmware or not for ME, the other answers to this question seem to suggest that they do run Intel firmware.
I can confirm, with info directly from my local Apple Store, that Intel Macs do indeed ship with Intel ME hardware, and that Apple does not modify any Intel hardware. At least Macs are not affected by the SPS 4.0 and the TXE 3.0 bugs! In my opinion it's unclear whether Macs are affected by the Intel Q3’17 ME 11.x vulnerability - probably only Apple can tell. Then the firmware may not be affected by CVE-2017-5711|5712 because AMT isn't present on Macs.īut some of the recent vulnerabilities don't require AMT. One source and a linked source therein state that "Intel ME is baked in every CPU but according to The Register ( 0) the AMT part is not running on Apple hardware." AMT is also related to an older vulnerability and the Register link refers to this. In the macOS 10.13.1 update.pkg 21 of 46 firmware files contain Intel Management Engine code which may be affected by CVE-2017-5705|5708|5711|5712. In an EFIFirmware2015Update.pkg 2 of 21 firmware files contain Intel Management Engine code which may be affected by CVE-2017-5705|5708|5711|5712.
#WHAT IS INTEL MANAGEMENT ENGINE 9.5 FIRMWARE PRO#
This is the MacBook Pro Retina Mid 2017: File: MBP143_0167_B00.fd (3/3)Īn ME entry in Family denotes Management Engine code. I checked some random firmware files with the tool MEAnalyzer and found at least some containing Intel Management Engine code: 6th and 7th generation Intel® Core™ Processor Family.Only some of the impacted processors are installed in Macs: In a second step your system may be attacked though. First: it's not macOS itself which is vulnerable in the first place but the firmware and related hardware is affected.