CWE
20
Advisory Published
Updated

CVE-2019-14609: Input Validation

First published: Mon Dec 16 2019(Updated: )

Improper input validation in firmware for Intel(R) NUC(R) may allow a privileged user to potentially enable escalation of privilege via local access.

Credit: secure@intel.com

Affected SoftwareAffected VersionHow to fix
Intel Nuc 8 Mainstream Game Kit Firmware<0036
Intel Nuc 8 Mainstream Game Kit
Intel Nuc 8 Mainstream Game Mini Computer Firmware<0036
Intel Nuc 8 Mainstream Game Mini Computer
Intel Nuc8i7bek Firmware<0077
Intel Nuc8i7bek
Intel Cd1p64gk Firmware<0053
Intel Cd1p64gk
Intel Nuc8i3cysm Firmware<0043
Intel Nuc8i3cysm
Intel Nuc8i7hnk Firmware<0059
Intel Nuc8i7hnk
Intel Nuc7i7dnke Firmware<0067
Intel Nuc7i7dnke
Intel Nuc7i5dnke Firmware<0067
Intel Nuc7i5dnke
Intel Nuc7i3dnhe Firmware<0067
Intel Nuc7i3dnhe
Intel Stk2mv64cc Firmware<0061
Intel Stk2mv64cc
Intel Stk2m3w64cc Firmware<0062
Intel Stk2m3w64cc
Intel Nuc6i7kyk Firmware<0066
Intel Nuc6i7kyk
Intel Nuc6i5syh Firmware<0072
Intel Nuc6i5syh
Intel Nuc7cjyh Firmware<0053
Intel Nuc7cjyh
Intel Cd1m3128mk Firmware<0058
Intel Cd1m3128mk
Intel Cd1iv128mk Firmware<0038
Intel Cd1iv128mk
Intel Nuc6cays Firmware<0064
Intel Nuc6cays
Intel De3815tybe Firmware<0024
Intel De3815tybe
Intel D34010wyb Firmware<0054
Intel D34010wyb

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is CVE-2019-14609?

    CVE-2019-14609 is a vulnerability in the firmware for Intel NUC that may allow a privileged user to potentially enable escalation of privilege via local access.

  • How severe is CVE-2019-14609?

    CVE-2019-14609 has a severity rating of 6.7 (medium).

  • Which software versions are affected by CVE-2019-14609?

    CVE-2019-14609 affects Intel NUC firmware versions up to and exclusive of 0036.

  • How can I fix CVE-2019-14609?

    To fix CVE-2019-14609, update your Intel NUC firmware to version 0036 or higher.

  • Where can I find more information about CVE-2019-14609?

    You can find more information about CVE-2019-14609 on the Intel Security Center Advisory page: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00323.html

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203