CVE-2019-0097: Input Validation
Published May 17, 2019
·Updated
Insufficient input validation vulnerability in subsystem for Intel(R) AMT before version 12.0.35 may allow a privileged user to potentially enable denial of service via network access.
Affected Software
1 affected component
Intel Active Management Technology Firmware>=12.0.20<12.0.35
Event History
May 17, 2019
CVE Published
via MITRE·03:41 PM
Data Sourced
via MITRE·03:41 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2019-0097?
CVE-2019-0097 is an insufficient input validation vulnerability in the subsystem for Intel(R) AMT before version 12.0.35, which may allow a privileged user to potentially enable denial of service via network access.
2
What software is affected by CVE-2019-0097?
Intel Active Management Technology Firmware versions between 12.0.20 and 12.0.35 are affected by CVE-2019-0097.
3
What is the severity of CVE-2019-0097?
CVE-2019-0097 has a severity level of medium with a score of 4.9.
4
How can I fix CVE-2019-0097?
To fix CVE-2019-0097, users should update their Intel Active Management Technology Firmware to version 12.0.35 or newer.
5
What is the Common Weakness Enumeration (CWE) ID for CVE-2019-0097?
The CWE ID for CVE-2019-0097 is CWE-20.