First published: Tue Jun 04 2019(Updated: )
Marvell SSD Controller (88SS1074, 88SS1079, 88SS1080, 88SS1093, 88SS1092, 88SS1095, 88SS9174, 88SS9175, 88SS9187, 88SS9188, 88SS9189, 88SS9190, 88SS1085, 88SS1087, 88SS1090, 88SS1100, 88SS1084, 88SS1088, & 88SS1098) devices allow reprogramming flash memory to bypass the secure boot protection mechanism.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Marvell 88ss1074 Firmware | ||
Marvell 88ss1074 | ||
Marvell 88ss1079 Firmware | ||
Marvell 88ss1079 | ||
Marvell 88ss1080 Firmware | ||
Marvell 88ss1080 | ||
Marvell 88ss1093 Firmware | ||
Marvell 88ss1093 | ||
Marvell 88ss1092 Firmware | ||
Marvell 88ss1092 | ||
Marvell 88ss1095 Firmware | ||
Marvell 88ss1095 | ||
Marvell 88ss9174 Firmware | ||
Marvell 88ss9174 | ||
Marvell 88ss9175 Firmware | ||
Marvell 88ss9175 | ||
Marvell 88ss9187 Firmware | ||
Marvell 88ss9187 | ||
Marvell 88ss9188 Firmware | ||
Marvell 88ss9188 | ||
Marvell 88ss9189 Firmware | ||
Marvell 88ss9189 | ||
Marvell 88ss9190 Firmware | ||
Marvell 88ss9190 | ||
Marvell 88ss1085 Firmware | ||
Marvell 88ss1085 | ||
Marvell 88ss1087 Firmware | ||
Marvell 88ss1087 | ||
Marvell 88ss1090 Firmware | ||
Marvell 88ss1090 | ||
Marvell 88ss1100 Firmware | ||
Marvell 88ss1100 | ||
Marvell 88ss1084 Firmware | ||
Marvell 88ss1084 | ||
Marvell 88ss1088 Firmware | ||
Marvell 88ss1088 | ||
Marvell 88ss1098 Firmware | ||
Marvell 88ss1098 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2019-10636.
The severity of CVE-2019-10636 is medium with a severity value of 4.6.
Marvell SSD Controller devices with the following model numbers are affected: 88SS1074, 88SS1079, 88SS1080, 88SS1093, 88SS1092, 88SS1095, 88SS9174, 88SS9175, 88SS9187, 88SS9188, 88SS9189, 88SS9190, 88SS1085, 88SS1087, 88SS1090, 88SS1100, 88SS1084, 88SS1088, and 88SS1098.
To fix the vulnerability in your Marvell SSD Controller, it is recommended to update the firmware to the latest version provided by Marvell.
You can find more information about CVE-2019-10636 at the following link: [https://www.marvell.com/documents/x9g4hrszt5ls3udbe1eo/](https://www.marvell.com/documents/x9g4hrszt5ls3udbe1eo/)