CVE-2019-14608
HIGH
7,8
Source: [email protected]
Attack Vector: local
Attack Complexity: low
Privileges Required: low
User Interaction: none
Scope: unchanged
Confidentiality: high
Integrity: high
Availability: high
MEDIUM
4,6
Source: [email protected]
Access Vector: local
Access Complexity: low
Authentication: none
Confidentiality: partial
Integrity: partial
Availability: partial
Description
AI Translation Available
Improper buffer restrictions in firmware for Intel(R) NUC(R) may allow an authenticated user to potentially enable escalation of privilege via local access.
EPSS (Exploit Prediction Scoring System)
Trend Analysis
EPSS (Exploit Prediction Scoring System)
Prevede la probabilità di sfruttamento basata su intelligence sulle minacce e sulle caratteristiche della vulnerabilità.
EPSS Score
0,0019
Percentile
0,4th
Updated
EPSS Score Trend (Last 91 Days)
119
Improper Restriction of Operations within the Bounds of a Memory Buffer
StableCommon Consequences
Security Scopes Affected:
Integrity
Confidentiality
Availability
Potential Impacts:
Execute Unauthorized Code Or Commands
Modify Memory
Read Memory
Dos: Crash, Exit, Or Restart
Dos: Resource Consumption (Cpu)
Dos: Resource Consumption (Memory)
Applicable Platforms
Languages:
Assembly, C, C++, Memory-Unsafe
Operating System
Nuc8I7Bek Firmware by Intel
Version Range Affected
To
0077
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:intel:nuc8i7bek_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Nuc7I5Dnke Firmware by Intel
Version Range Affected
To
0067
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:intel:nuc7i5dnke_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Cd1Iv128Mk Firmware by Intel
Version Range Affected
To
0038
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:intel:cd1iv128mk_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Nuc7I3Dnhe Firmware by Intel
Version Range Affected
To
0067
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:intel:nuc7i3dnhe_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Nuc7I7Dnke Firmware by Intel
Version Range Affected
To
0067
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:intel:nuc7i7dnke_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Nuc 8 Mainstream Game Kit Firmware by Intel
Version Range Affected
To
0036
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:intel:nuc_8_mainstream_game_kit_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
D34010Wyb Firmware by Intel
Version Range Affected
To
0054
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:intel:d34010wyb_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Cd1M3128Mk Firmware by Intel
Version Range Affected
To
0058
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:intel:cd1m3128mk_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Nuc8I3Cysm Firmware by Intel
Version Range Affected
To
0043
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:intel:nuc8i3cysm_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Nuc8I7Hnk Firmware by Intel
Version Range Affected
To
0059
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:intel:nuc8i7hnk_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Stk2Mv64Cc Firmware by Intel
Version Range Affected
To
0061
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:intel:stk2mv64cc_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Nuc7Cjyh Firmware by Intel
Version Range Affected
To
0053
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:intel:nuc7cjyh_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Nuc6I7Kyk Firmware by Intel
Version Range Affected
To
0066
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:intel:nuc6i7kyk_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Nuc6I5Syh Firmware by Intel
Version Range Affected
To
0072
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:intel:nuc6i5syh_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Stk2M3W64Cc Firmware by Intel
Version Range Affected
To
0062
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:intel:stk2m3w64cc_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Nuc 8 Mainstream Game Mini Computer Firmware by Intel
Version Range Affected
To
0036
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:intel:nuc_8_mainstream_game_mini_computer_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Nuc6Cays Firmware by Intel
Version Range Affected
To
0064
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:intel:nuc6cays_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Cd1P64Gk Firmware by Intel
Version Range Affected
To
0053
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:intel:cd1p64gk_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
De3815Tybe Firmware by Intel
Version Range Affected
To
0024
(exclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:intel:de3815tybe_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00323…
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00323…