PT-2019-2353 · Intel · Intel Server Boards+4
Published
2019-05-14
·
Updated
2021-06-21
·
CVE-2019-0119
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Intel(R) Xeon(R) Processor D Family (affected versions not specified)
Intel(R) Xeon(R) Scalable Processor (affected versions not specified)
Intel(R) Server Board (affected versions not specified)
Intel(R) Server System (affected versions not specified)
Intel(R) Compute Module (affected versions not specified)
Description
A buffer overflow vulnerability in the system firmware may allow a privileged user to potentially enable escalation of privilege and/or denial of service via local access. The vulnerability can be exploited by an attacker to gain elevated privileges or cause a denial of service.
Recommendations
For Intel(R) Xeon(R) Processor D Family, update the system firmware to a version that includes the fix for this issue.
For Intel(R) Xeon(R) Scalable Processor, update the system firmware to a version that includes the fix for this issue.
For Intel(R) Server Board, update the system firmware to a version that includes the fix for this issue.
For Intel(R) Server System, update the system firmware to a version that includes the fix for this issue.
For Intel(R) Compute Module, update the system firmware to a version that includes the fix for this issue.
As a temporary workaround, consider restricting local access to the system until a patch is available.
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Intel Compute Modules
Intel Server Boards
Intel Server Systems
Intel Xeon Processor D Family
Intel Xeon Scalable Processors