First published: Fri May 17 2019(Updated: )
Insufficient access control in silicon reference firmware for Intel(R) Xeon(R) Scalable Processor, Intel(R) Xeon(R) Processor D Family may allow a privileged user to potentially enable escalation of privilege and/or denial of service via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Xeon D-1649n Firmware | ||
Intel Xeon D-1649n Firmware | ||
Intel Xeon D-1633N Firmware | ||
Intel Xeon D-1633N Firmware | ||
Intel Xeon D-1637 Firmware | ||
Intel Xeon D-1637 Firmware | ||
Intel Xeon D-1627 Firmware | ||
Intel Xeon D-1627 Firmware | ||
Intel Xeon D-1623N Firmware | ||
Intel Xeon D-1623N Firmware | ||
Intel Xeon D-1622 | ||
Intel Xeon D-1622 Firmware | ||
Intel Xeon D-1653N Firmware | ||
Intel Xeon D-1653N Firmware | ||
Intel Xeon D-1602 | ||
Intel Xeon D-1602 Firmware | ||
Intel Xeon D-2141I Firmware | ||
Intel Xeon D-2141I | ||
Intel Xeon D-2177NT Firmware | ||
Intel Xeon D-2177NT Firmware | ||
Intel Xeon D-2161I Firmware | ||
Intel Xeon D-2161I Firmware | ||
Intel Xeon D-2143IT Firmware | ||
Intel Xeon D-2143IT Firmware | ||
Intel Xeon D-2146NT Firmware | ||
Intel Xeon D-2146NT Firmware | ||
Intel Xeon D-2145NT Firmware | ||
Intel Xeon D-2145NT Firmware | ||
Intel Xeon D-2123IT Firmware | ||
Intel Xeon D-2123IT Firmware | ||
Intel Xeon D-2173IT | ||
Intel Xeon D-2173IT Firmware | ||
Intel Xeon D-2191 Firmware | ||
Intel Xeon D-2191 Firmware | ||
Intel Xeon D-2187NT Firmware | ||
Intel Xeon D-2187NT Firmware | ||
Intel Xeon D-2142IT Firmware | ||
Intel Xeon D-2142IT Firmware | ||
Intel Xeon D-2163IT Firmware | ||
Intel Xeon D-2163IT Firmware | ||
Intel Xeon D-2183IT Firmware | ||
Intel Xeon D-2183IT Firmware | ||
Intel Xeon D-2166NT Firmware | ||
Intel Xeon D-2166NT Firmware | ||
Intel Xeon D-1513N Firmware | ||
Intel Xeon D-1513N Firmware | ||
Intel Xeon D-1533 | ||
Intel Xeon D-1533 | ||
Intel Xeon D-1553N Firmware | ||
Intel Xeon D-1553N Firmware | ||
Intel Xeon D-1523N | ||
Intel Xeon D-1523N firmware | ||
Intel Xeon D-1543N Firmware | ||
Intel Xeon D-1543N Firmware | ||
Intel Xeon D-1559 Firmware | ||
Intel Xeon D-1559 Firmware | ||
Intel Xeon D-1529 Firmware | ||
Intel Xeon D-1529 Firmware | ||
Intel Xeon D-1539 Firmware | ||
Intel Xeon D-1539 Firmware | ||
Intel Xeon D-1567 Firmware | ||
Intel Xeon D-1567 Firmware | ||
Intel Xeon D-1557 Firmware | ||
Intel Xeon D-1557 Firmware | ||
Intel Xeon D-1577 Firmware | ||
Intel Xeon D-1577 Firmware | ||
Intel Xeon D-1571 Firmware | ||
Intel Xeon D-1571 Firmware | ||
Intel Xeon D-1528 Firmware | ||
Intel Xeon D-1528 Firmware | ||
Intel Xeon D-1541 Firmware | ||
Intel Xeon D-1541 Firmware | ||
Intel Xeon D-1518 Firmware | ||
Intel Xeon D-1518 Firmware | ||
Intel Xeon D-1521 | ||
Intel Xeon D-1521 Firmware | ||
Intel Xeon D-1531 Firmware | ||
Intel Xeon D-1531 Firmware | ||
Intel Xeon D-1548 | ||
Intel Xeon D-1548 Firmware | ||
Intel Xeon D-1527 Firmware | ||
Intel Xeon D-1527 Firmware | ||
Intel Xeon D-1537 Firmware | ||
Intel Xeon D-1537 Firmware | ||
Intel Xeon D-1540 Firmware | ||
Intel Xeon D-1540 Firmware | ||
Intel Xeon D-1520 Firmware | ||
Intel Xeon D-1520 Firmware | ||
Intel Xeon Platinum 8458P Processors Firmware | ||
Intel Xeon Platinum Processors Firmware | ||
Intel Xeon Gold Processors Firmware | ||
Intel Xeon Gold Processors Firmware | ||
Intel Xeon Silver Processors Firmware | ||
Intel Xeon Silver Processors Firmware | ||
Intel Xeon Bronze Processors Firmware | ||
Intel Xeon Bronze Processors Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-0126 is classified as a high severity vulnerability due to the potential for privilege escalation and denial of service.
To mitigate CVE-2019-0126, apply the latest firmware updates provided by Intel for the affected Xeon processor models.
CVE-2019-0126 affects users of Intel Xeon Scalable Processors and certain firmware versions.
Exploitation of CVE-2019-0126 may lead to escalation of privileges or denial of service in systems utilizing the vulnerable Intel firmware.
CVE-2019-0126 requires local access, meaning it is not remotely exploitable without local user privileges.