CVE-2019-11139

MEDIUMCVSS 6/10EPSS 0.36%

Last modified

CVE-2019-11139 is a medium-severity vulnerability rated 6/10 on the CVSS scale. Improper conditions check in the voltage modulation interface for some Intel(R) Xeon(R) Scalable Processors may allow a privileged user to potentially enable denial of service via local access.. EPSS estimates a 0.36% chance of exploitation in the next 30 days.

Description

Improper conditions check in the voltage modulation interface for some Intel(R) Xeon(R) Scalable Processors may allow a privileged user to potentially enable denial of service via local access.

Metrics

CVSS 3.1
6/10

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H

EPSS Probability
0.36%

27.5th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
DebianDebian Linux8.0
OpensuseLeap15.0
OpensuseLeap15.1
IntelXeon 8153 FirmwareAll versions
IntelXeon 8156 FirmwareAll versions
IntelXeon 8158 FirmwareAll versions
IntelXeon 8160 FirmwareAll versions
IntelXeon 8160f FirmwareAll versions
IntelXeon 8160m FirmwareAll versions
IntelXeon 8160t FirmwareAll versions
IntelXeon 8164 FirmwareAll versions
IntelXeon 8168 FirmwareAll versions
IntelXeon 8170 FirmwareAll versions
IntelXeon 8170m FirmwareAll versions
IntelXeon 8176 FirmwareAll versions
IntelXeon 8176f FirmwareAll versions
IntelXeon 8176m FirmwareAll versions
IntelXeon 8180 FirmwareAll versions
IntelXeon 8180m FirmwareAll versions
IntelXeon 5115 FirmwareAll versions
IntelXeon 5118 FirmwareAll versions
IntelXeon 5119t FirmwareAll versions
IntelXeon 5120 FirmwareAll versions
IntelXeon 5120t FirmwareAll versions
IntelXeon 5122 FirmwareAll versions
IntelXeon 6126 FirmwareAll versions
IntelXeon 6126f FirmwareAll versions
IntelXeon 6126t FirmwareAll versions
IntelXeon 6128 FirmwareAll versions
IntelXeon 6130 FirmwareAll versions
IntelXeon 6130f FirmwareAll versions
IntelXeon 6130t FirmwareAll versions
IntelXeon 6132 FirmwareAll versions
IntelXeon 6134 FirmwareAll versions
IntelXeon 6134m FirmwareAll versions
IntelXeon 6136 FirmwareAll versions
IntelXeon 6138 FirmwareAll versions
IntelXeon 6138f FirmwareAll versions
IntelXeon 6138t FirmwareAll versions
IntelXeon 6140 FirmwareAll versions
IntelXeon 6140m FirmwareAll versions
IntelXeon 6142 FirmwareAll versions
IntelXeon 6142f FirmwareAll versions
IntelXeon 6144 FirmwareAll versions
IntelXeon 6146 FirmwareAll versions
IntelXeon 6148 FirmwareAll versions
IntelXeon 6148f FirmwareAll versions
IntelXeon 6150 FirmwareAll versions
IntelXeon 6152 FirmwareAll versions
IntelXeon 6154 FirmwareAll versions

Showing 50 of 60 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2019-11139?
Improper conditions check in the voltage modulation interface for some Intel(R) Xeon(R) Scalable Processors may allow a privileged user to potentially enable denial of service via local access.
How severe is CVE-2019-11139?
CVE-2019-11139 has a CVSS score of 6/10 (MEDIUM severity). The EPSS model estimates a 0.36% probability of exploitation in the next 30 days.
How do I fix CVE-2019-11139?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2019-11139?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST