CVE-2019-11139: Medium severity debian linux vulnerability
Improper conditions check in the voltage modulation interface for some Intel(R) Xeon(R) Scalable Processors may allow a privileged user to potentially enable denial of service via local access.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-11139?
CVE-2019-11139 is a vulnerability in the voltage modulation interface for some Intel(R) Xeon(R) Scalable Processors that may allow a privileged user to potentially enable denial of service via local access.
How severe is CVE-2019-11139?
The severity of CVE-2019-11139 is dependent on the level of privilege of the user, but it has the potential to cause denial of service.
Which software versions are affected by CVE-2019-11139?
CVE-2019-11139 affects Intel(R) Xeon(R) Scalable Processors with the following versions of the intel-microcode package: 3.20191112-0ubuntu0.18.04.2, 3.20191112-0ubuntu0.19.04.2, 3.20191112-0ubuntu0.19.10.2, 3.20191112-0ubuntu0.14.04.2, 3.20191112-0ubuntu0.16.04.2, 3.20220510.1~deb10u1, 3.20230808.1~deb10u1, 3.20230214.1~deb11u1, 3.20230808.1~deb11u1, 3.20230512.1, 3.20230808.1~deb12u1, 3.20230808.1.
How can I fix CVE-2019-11139?
To fix CVE-2019-11139, update the intel-microcode package to one of the versions recommended by your respective operating system or distribution.
Where can I find more information about CVE-2019-11139?
You can find more information about CVE-2019-11139 on the Intel Security Center Advisory (https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00271.html) and the OpenSUSE Security Announce (http://lists.opensuse.org/opensuse-security-announce/2019-11/msg00046.html) websites.