PT-2019-2353 · Intel · Intel Server Boards+4

Published

2019-05-14

·

Updated

2021-06-21

·

CVE-2019-0119

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Intel(R) Xeon(R) Processor D Family (affected versions not specified) Intel(R) Xeon(R) Scalable Processor (affected versions not specified) Intel(R) Server Board (affected versions not specified) Intel(R) Server System (affected versions not specified) Intel(R) Compute Module (affected versions not specified)
Description A buffer overflow vulnerability in the system firmware may allow a privileged user to potentially enable escalation of privilege and/or denial of service via local access. The vulnerability can be exploited by an attacker to gain elevated privileges or cause a denial of service.
Recommendations For Intel(R) Xeon(R) Processor D Family, update the system firmware to a version that includes the fix for this issue. For Intel(R) Xeon(R) Scalable Processor, update the system firmware to a version that includes the fix for this issue. For Intel(R) Server Board, update the system firmware to a version that includes the fix for this issue. For Intel(R) Server System, update the system firmware to a version that includes the fix for this issue. For Intel(R) Compute Module, update the system firmware to a version that includes the fix for this issue. As a temporary workaround, consider restricting local access to the system until a patch is available.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2019-02128
CVE-2019-0119

Affected Products

Intel Compute Modules
Intel Server Boards
Intel Server Systems
Intel Xeon Processor D Family
Intel Xeon Scalable Processors