CVE-2019-10637

UnknownEPSS 0.31%

Last modified

CVE-2019-10637 is a vulnerability of currently unknown severity. Marvell SSD Controller (88SS1074, 88SS1079, 88SS1080, 88SS1093, 88SS1092, 88SS1095, 88SS9174, 88SS9175, 88SS9187, 88SS9188, 88SS9189, 88SS9190, 88SS1085, 88SS1087, 88SS1090, 88SS1100, 88SS1084, 88SS1088, & 88SS1098) devices are vulnerable in manipulating a combination of IO pins to bypass the secure boot protection mechanism.. EPSS estimates a 0.31% chance of exploitation in the next 30 days.

Description

Marvell SSD Controller (88SS1074, 88SS1079, 88SS1080, 88SS1093, 88SS1092, 88SS1095, 88SS9174, 88SS9175, 88SS9187, 88SS9188, 88SS9189, 88SS9190, 88SS1085, 88SS1087, 88SS1090, 88SS1100, 88SS1084, 88SS1088, & 88SS1098) devices are vulnerable in manipulating a combination of IO pins to bypass the secure boot protection mechanism.

Metrics

EPSS Probability
0.31%

22.4th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

VendorProductVersions
Marvell88ss1074 FirmwareAll versions
Marvell88ss1079 FirmwareAll versions
Marvell88ss1080 FirmwareAll versions
Marvell88ss1093 FirmwareAll versions
Marvell88ss1092 FirmwareAll versions
Marvell88ss1095 FirmwareAll versions
Marvell88ss9174 FirmwareAll versions
Marvell88ss9175 FirmwareAll versions
Marvell88ss9187 FirmwareAll versions
Marvell88ss9188 FirmwareAll versions
Marvell88ss9189 FirmwareAll versions
Marvell88ss9190 FirmwareAll versions
Marvell88ss1085 FirmwareAll versions
Marvell88ss1087 FirmwareAll versions
Marvell88ss1090 FirmwareAll versions
Marvell88ss1100 FirmwareAll versions
Marvell88ss1084 FirmwareAll versions
Marvell88ss1088 FirmwareAll versions
Marvell88ss1098 FirmwareAll versions

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2019-10637?
Marvell SSD Controller (88SS1074, 88SS1079, 88SS1080, 88SS1093, 88SS1092, 88SS1095, 88SS9174, 88SS9175, 88SS9187, 88SS9188, 88SS9189, 88SS9190, 88SS1085, 88SS1087, 88SS1090, 88SS1100, 88SS1084, 88SS1088, & 88SS1098) devices are vulnerable in manipulating a combination of IO pins to bypass the secure boot protection mechanism.
How severe is CVE-2019-10637?
Severity scoring for CVE-2019-10637 is pending analysis. The EPSS model estimates a 0.31% probability of exploitation in the next 30 days.
How do I fix CVE-2019-10637?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2019-10637?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST