First published: Fri Oct 11 2019(Updated: )
Memory corruption in system firmware for Intel(R) NUC may allow a privileged user to potentially enable escalation of privilege, denial of service and/or information disclosure via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Nuc 8 Mainstream Game Kit Firmware | <inwhl357 | |
Intel Nuc 8 Mainstream Game Kit | ||
Intel Nuc 8 Mainstream Game Mini Computer Firmware | <inwhl357 | |
Intel Nuc 8 Mainstream Game Mini Computer | ||
Intel Nuc Board De3815tybe Firmware | <ty0022 | |
Intel Nuc Board De3815tybe | ||
Intel Nuc Kit De3815tykhe Firmware | <ty0022 | |
Intel Nuc Kit De3815tykhe | ||
Intel Nuc Board De3815tybe Firmware | <ty0067 | |
Intel Nuc Kit De3815tykhe Firmware | <ty0067 | |
Intel Nuc Kit Dn2820fykh Firmware | <fy0069 | |
Intel Nuc Kit Dn2820fykh |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-14570 is a vulnerability in the system firmware for Intel(R) NUC that may allow a privileged user to potentially enable escalation of privilege, denial of service, and/or information disclosure via local access.
CVE-2019-14570 affects Intel NUC 8 Mainstream Game Kit Firmware versions up to exclusive inwhl357, Intel NUC 8 Mainstream Game Mini Computer Firmware versions up to exclusive inwhl357, Intel NUC Board De3815tybe Firmware versions up to exclusive ty0022, Intel NUC Kit De3815tykhe Firmware versions up to exclusive ty0022, Intel NUC Board De3815tybe Firmware versions up to exclusive ty0067, and Intel NUC Kit De3815tykhe Firmware versions up to exclusive ty0067.
The severity of CVE-2019-14570 is high with a CVSS score of 7.8.
To fix CVE-2019-14570, it is recommended to update to the latest firmware version provided by Intel and follow any additional instructions or patches provided in the official advisory.
More information about CVE-2019-14570 can be found in the official advisory published by Intel at the following link: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00296.html