CVE-2019-0174

moderate-risk
Published 2019-06-13

Logic condition in specific microprocessors may allow an authenticated user to potentially enable partial physical address information disclosure via local access.

Do I need to act?

-
0.18% chance of exploitation
EPSS score — low exploit probability
-
Not on CISA KEV list
No confirmed active exploitation reported to CISA
?
Patch status unknown
Check vendor advisories for fix availability and mitigation guidance
3
CVSS 3.3/10 Low
LOCAL / LOW complexity

Affected Products (20)

I9-9900X Firmware
I9-9920X Firmware
I9-9960X Firmware
I9-9980Xe Firmware
I9-9940X Firmware
I9-7960X Firmware
I9-7980Xe Firmware
I9-7940X Firmware
I9-7920X Firmware
I9-7900X Firmware
I7-7820X Firmware
I7-7800X Firmware
I5-4422E Firmware
I5-4410E Firmware
I5-4402Ec Firmware
I5-4402E Firmware
I5-4400E Firmware
I5-4460T Firmware
I5-4460S Firmware
I5-4460 Firmware

Affected Vendors

47
/ 100
moderate-risk
Severity 13/34 · Low
Exploitability 1/34 · Minimal
Exposure 33/34 · Critical