CVE-2019-0126

UnknownEPSS 0.40%

Last modified

CVE-2019-0126 is a vulnerability of currently unknown severity. Insufficient access control in silicon reference firmware for Intel(R) Xeon(R) Scalable Processor, Intel(R) Xeon(R) Processor D Family may allow a privileged user to potentially enable escalation of privilege and/or denial of service via local access.. EPSS estimates a 0.40% chance of exploitation in the next 30 days.

Description

Insufficient access control in silicon reference firmware for Intel(R) Xeon(R) Scalable Processor, Intel(R) Xeon(R) Processor D Family may allow a privileged user to potentially enable escalation of privilege and/or denial of service via local access.

Metrics

EPSS Probability
0.40%

31.9th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

VendorProductVersions
IntelXeon D-1649n FirmwareAll versions
IntelXeon D-1633n FirmwareAll versions
IntelXeon D-1637 FirmwareAll versions
IntelXeon D-1627 FirmwareAll versions
IntelXeon D-1623n FirmwareAll versions
IntelXeon D-1622 FirmwareAll versions
IntelXeon D-1653n FirmwareAll versions
IntelXeon D-1602 FirmwareAll versions
IntelXeon D-2141i FirmwareAll versions
IntelXeon D-2177nt FirmwareAll versions
IntelXeon D-2161i FirmwareAll versions
IntelXeon D-2143it FirmwareAll versions
IntelXeon D-2146nt FirmwareAll versions
IntelXeon D-2145nt FirmwareAll versions
IntelXeon D-2123it FirmwareAll versions
IntelXeon D-2173it FirmwareAll versions
IntelXeon D-2191 FirmwareAll versions
IntelXeon D-2187nt FirmwareAll versions
IntelXeon D-2142it FirmwareAll versions
IntelXeon D-2163it FirmwareAll versions
IntelXeon D-2183it FirmwareAll versions
IntelXeon D-2166nt FirmwareAll versions
IntelXeon D-1513n FirmwareAll versions
IntelXeon D-1533n FirmwareAll versions
IntelXeon D-1553n FirmwareAll versions
IntelXeon D-1523n FirmwareAll versions
IntelXeon D-1543n FirmwareAll versions
IntelXeon D-1559 FirmwareAll versions
IntelXeon D-1529 FirmwareAll versions
IntelXeon D-1539 FirmwareAll versions
IntelXeon D-1567 FirmwareAll versions
IntelXeon D-1557 FirmwareAll versions
IntelXeon D-1577 FirmwareAll versions
IntelXeon D-1571 FirmwareAll versions
IntelXeon D-1528 FirmwareAll versions
IntelXeon D-1541 FirmwareAll versions
IntelXeon D-1518 FirmwareAll versions
IntelXeon D-1521 FirmwareAll versions
IntelXeon D-1531 FirmwareAll versions
IntelXeon D-1548 FirmwareAll versions
IntelXeon D-1527 FirmwareAll versions
IntelXeon D-1537 FirmwareAll versions
IntelXeon D-1540 FirmwareAll versions
IntelXeon D-1520 FirmwareAll versions
IntelXeon Platinum Processors FirmwareAll versions
IntelXeon Gold Processors FirmwareAll versions
IntelXeon Silver Processors FirmwareAll versions
IntelXeon Bronze Processors FirmwareAll versions

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2019-0126?
Insufficient access control in silicon reference firmware for Intel(R) Xeon(R) Scalable Processor, Intel(R) Xeon(R) Processor D Family may allow a privileged user to potentially enable escalation of privilege and/or denial of service via local access.
How severe is CVE-2019-0126?
Severity scoring for CVE-2019-0126 is pending analysis. The EPSS model estimates a 0.40% probability of exploitation in the next 30 days.
How do I fix CVE-2019-0126?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2019-0126?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST