CVE-2019-1125: Windows Kernel Information Disclosure Vulnerability

Published Jun 27, 2019
·
Updated

A Spectre gadget was found in the Linux kernel's implementation of system interrupts. An attacker with local access could use this information to reveal private data through a Spectre like side channel.

Other sources

An industry-wide issue was found in the way many modern microprocessor designs have implemented speculative execution of instructions (a commonly used performance optimization). This flaw is a variant on the previous "speculative execution" attack vectors.

A spectre-v1 like side-channel was found on the kernels implementation of system calls where a local user could use branch misprediction to create an observable timing changes which can inadvertently reveal private data.

Note: This flaw affects both Intel x86-64 and AMD Microprocessors. Other non x86 architectures do not have this attack vector available.

Red Hat product security is not aware of a method that an attacker can use this method of attack directly, fixing this flaw as part of the larger speculative execution issues reduces this attack vector if one becomes known.

After installing the updated kernel package, the system will need to be rebooted for the changes to take effect.

Upstream patch set: https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=a2059825986a1c8143fd6698774fa9d83733bb11

Red Hat

An information disclosure vulnerability exists when certain central processing units (CPU) speculatively access memory, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1071, CVE-2019-1073.

An information disclosure vulnerability exists when certain central processing units (CPU) speculatively access memory. An attacker who successfully exploited the vulnerability could read privileged data across trust boundaries. To exploit this vulnerability, an attacker would have to log on to an affected system and run a specially crafted application. The vulnerability would not allow an attacker to elevate user rights directly, but it could be used to obtain information that could be used to try to compromise the affected system further. On January 3, 2018, Microsoft released an advisory and security updates related to a newly-discovered class of hardware vulnerabilities (known as Spectre) involving speculative execution side channels that affect AMD, ARM, and Intel CPUs to varying degrees. This vulnerability, released on August 6, 2019, is a variant of the Spectre Variant 1 speculative execution side channel vulnerability and has been assigned CVE-2019-1125. Microsoft released a security update on July 9, 2019 that addresses the vulnerability through a software change that mitigates how the CPU speculatively accesses memory. Note that this vulnerability does not require a microcode update from your device OEM.

NVD

Affected Software

46 affected componentsFixes available
redhat/kernel<0:2.6.32-754.18.2.el6
0:2.6.32-754.18.2.el6
redhat/kernel<0:2.6.32-431.96.1.el6
0:2.6.32-431.96.1.el6
redhat/kernel<0:2.6.32-504.80.2.el6
0:2.6.32-504.80.2.el6
redhat/kernel-rt<0:3.10.0-1062.1.1.rt56.1024.el7
0:3.10.0-1062.1.1.rt56.1024.el7
redhat/kernel<0:3.10.0-1062.1.1.el7
0:3.10.0-1062.1.1.el7
redhat/kernel<0:3.10.0-327.82.1.el7
0:3.10.0-327.82.1.el7
redhat/kernel<0:3.10.0-514.69.1.el7
0:3.10.0-514.69.1.el7
redhat/kernel<0:3.10.0-693.58.1.el7
0:3.10.0-693.58.1.el7
redhat/kernel<0:3.10.0-862.43.1.el7
0:3.10.0-862.43.1.el7
redhat/kernel<0:3.10.0-957.38.1.el7
0:3.10.0-957.38.1.el7
redhat/kernel-rt<0:4.18.0-80.7.2.rt9.154.el8_0
0:4.18.0-80.7.2.rt9.154.el8_0
redhat/kernel<0:4.18.0-80.7.2.el8_0
0:4.18.0-80.7.2.el8_0
redhat/kernel-rt<1:3.10.0-693.58.1.rt56.652.el6
1:3.10.0-693.58.1.rt56.652.el6
redhat/redhat-release-virtualization-host<0:4.2-15.1.el7
0:4.2-15.1.el7
redhat/redhat-virtualization-host<0:4.2-20191022.0.el7_6
0:4.2-20191022.0.el7_6
redhat/imgbased<0:1.1.10-0.1.el7e
0:1.1.10-0.1.el7e
redhat/ovirt-node-ng<0:4.3.6-0.20190820.0.el7e
0:4.3.6-0.20190820.0.el7e
redhat/redhat-release-virtualization-host<0:4.3.6-2.el7e
0:4.3.6-2.el7e
redhat/redhat-virtualization-host<0:4.3.6-20190924.0.el7_7
0:4.3.6-20190924.0.el7_7
Microsoft Windows 10
Microsoft Windows 10=1607
Microsoft Windows 10=1703
Microsoft Windows 10=1709
Microsoft Windows 10=1803
Microsoft Windows 10=1809
Microsoft Windows 10=1903
Microsoft Windows 7=sp1
Microsoft Windows 8.1
Microsoft Windows RT 8.1
Microsoft Windows Server 2008=sp2
Microsoft Windows Server 2008=r2-sp1
Microsoft Windows Server 2008=r2-sp1
Microsoft Windows Server 2012
Microsoft Windows Server 2012=r2
Microsoft Windows Server 2016
Microsoft Windows Server 2016=1803
Microsoft Windows Server 2016=1903
Microsoft Windows Server 2019
redhat Virtualization Host=4.0
redhat Enterprise Linux Desktop=7.0
redhat Enterprise Linux Server=7.0
redhat Enterprise Linux Server Aus=7.7
redhat Enterprise Linux Server Eus=7.7
redhat Enterprise Linux Server Tus=7.7
redhat Enterprise Linux Workstation=7.0
debian/linux
5.10.223-15.10.262-16.1.176-16.1.180-16.12.94-16.12.101-17.1.7-17.1.8-1

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Upgrade

    Upgrade redhat/kernel to a version that resolves this vulnerability.

    Fixed in 0:2.6.32-754.18.2.el6
  2. Upgrade

    Upgrade redhat/kernel to a version that resolves this vulnerability.

    Fixed in 0:2.6.32-431.96.1.el6
  3. Upgrade

    Upgrade redhat/kernel to a version that resolves this vulnerability.

    Fixed in 0:2.6.32-504.80.2.el6
  4. Upgrade

    Upgrade redhat/kernel-rt to a version that resolves this vulnerability.

    Fixed in 0:3.10.0-1062.1.1.rt56.1024.el7
  5. Upgrade

    Upgrade redhat/kernel to a version that resolves this vulnerability.

    Fixed in 0:3.10.0-1062.1.1.el7
  6. Upgrade

    Upgrade redhat/kernel to a version that resolves this vulnerability.

    Fixed in 0:3.10.0-327.82.1.el7
  7. Upgrade

    Upgrade redhat/kernel to a version that resolves this vulnerability.

    Fixed in 0:3.10.0-514.69.1.el7
  8. Upgrade

    Upgrade redhat/kernel to a version that resolves this vulnerability.

    Fixed in 0:3.10.0-693.58.1.el7
  9. Upgrade

    Upgrade redhat/kernel to a version that resolves this vulnerability.

    Fixed in 0:3.10.0-862.43.1.el7
  10. Upgrade

    Upgrade redhat/kernel to a version that resolves this vulnerability.

    Fixed in 0:3.10.0-957.38.1.el7
  11. Upgrade

    Upgrade redhat/kernel-rt to a version that resolves this vulnerability.

    Fixed in 0:4.18.0-80.7.2.rt9.154.el8_0
  12. Upgrade

    Upgrade redhat/kernel to a version that resolves this vulnerability.

    Fixed in 0:4.18.0-80.7.2.el8_0
  13. Upgrade

    Upgrade redhat/kernel-rt to a version that resolves this vulnerability.

    Fixed in 1:3.10.0-693.58.1.rt56.652.el6
  14. Upgrade

    Upgrade redhat/redhat-release-virtualization-host to a version that resolves this vulnerability.

    Fixed in 0:4.2-15.1.el7
  15. Upgrade

    Upgrade redhat/redhat-virtualization-host to a version that resolves this vulnerability.

    Fixed in 0:4.2-20191022.0.el7_6
  16. Upgrade

    Upgrade redhat/imgbased to a version that resolves this vulnerability.

    Fixed in 0:1.1.10-0.1.el7e
  17. Upgrade

    Upgrade redhat/ovirt-node-ng to a version that resolves this vulnerability.

    Fixed in 0:4.3.6-0.20190820.0.el7e
  18. Upgrade

    Upgrade redhat/redhat-release-virtualization-host to a version that resolves this vulnerability.

    Fixed in 0:4.3.6-2.el7e
  19. Upgrade

    Upgrade redhat/redhat-virtualization-host to a version that resolves this vulnerability.

    Fixed in 0:4.3.6-20190924.0.el7_7
  20. Upgrade

    Upgrade debian/linux to a version that resolves this vulnerability.

    Fixed in 5.10.223-1Fixed in 5.10.262-1Fixed in 6.1.176-1Fixed in 6.1.180-1Fixed in 6.12.94-1Fixed in 6.12.101-1Fixed in 7.1.7-1Fixed in 7.1.8-1

Event History

Jun 27, 2019
Data Sourced
via Red Hat·01:12 AM
DescriptionSeverityAffected Software
Aug 6, 2019
CVE Published
05:00 PM
Sep 3, 2019
CVE Published
via MITRE·05:52 PM
Data Sourced
via MITRE·05:52 PM
DescriptionSeverity
Data Sourced
via NVD·06:15 PM
RemedyDescriptionSeverityAffected Software
Jun 25, 2026
Data Sourced
via Launchpad·10:21 AM
Description
Jul 5, 2026
Data Sourced
via Ubuntu·10:36 AM
RemedyDescriptionSeverityAffected Software
Aug 12, 2026
Data Sourced
via Debian·11:18 AM
DescriptionAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2019-1125?

The severity of CVE-2019-1125 is rated as medium, indicating a moderate risk of information disclosure through a Spectre-like side channel.

2

How do I fix CVE-2019-1125?

To mitigate CVE-2019-1125, users should upgrade to the recommended kernel versions provided by Red Hat, such as 0:2.6.32-754.18.2.el6 or any version specified in security patches.

3

What type of attack does CVE-2019-1125 enable?

CVE-2019-1125 allows an attacker with local access to exploit a Spectre gadget to leak sensitive information through side-channel attacks.

4

Which systems are affected by CVE-2019-1125?

CVE-2019-1125 affects multiple versions of the Linux kernel, specifically those running on Red Hat Enterprise Linux and related distributions.

5

Is there a workaround for CVE-2019-1125?

While the best solution is to update the kernel, users may temporarily minimize exposure by restricting local access to systems until updates can be applied.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203