First published: Thu Aug 13 2020(Updated: )
Reliance on untrusted inputs in a security decision in some Intel(R) Thunderbolt(TM) controllers may allow unauthenticated user to potentially enable information disclosure via physical access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel DSL3310 Thunderbolt Firmware | ||
Intel DSL3310 Thunderbolt Firmware | ||
Intel DSL3510 Thunderbolt | ||
Intel DSL3510 Thunderbolt | ||
Intel DSL4510 Thunderbolt | ||
Intel DSL4510 Thunderbolt Firmware | ||
Intel dsl4410 Thunderbolt | ||
Intel DSL4410 Thunderbolt | ||
Intel DSL5520 Thunderbolt 2 Firmware | ||
Intel DSL5520 Thunderbolt 2 Firmware | ||
Intel DSL5320 Thunderbolt 2 | ||
Intel DSL5320 Thunderbolt 2 Firmware | ||
Intel DSL6540 Thunderbolt 3 | ||
Intel DSL6540 Thunderbolt 3 | ||
Intel DSL6340 Thunderbolt 3 firmware | ||
Intel DSL6340 Thunderbolt 3 firmware | ||
Intel JHL6540 Thunderbolt 3 | ||
Intel JHL6540 Thunderbolt 3 | ||
Intel JHL6340 Firmware | ||
Intel JHL6340 | ||
Intel jhl6240 Thunderbolt 3 | ||
Intel JHL6240 Thunderbolt 3 | ||
Intel Jhl7540 Firmware | ||
Intel Jhl7540 Thunderbolt 3 | ||
Intel JHL7340 Firmware | ||
Intel JHL7340 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-14630 refers to a vulnerability in some Intel Thunderbolt controllers that may allow an unauthenticated user to potentially enable information disclosure via physical access.
The Intel Dsl3310 Thunderbolt Firmware, Intel Dsl3510 Thunderbolt Firmware, Intel Dsl4510 Thunderbolt Firmware, Intel Dsl4410 Thunderbolt Firmware, Intel Dsl5520 Thunderbolt 2 Firmware, Intel Dsl5320 Thunderbolt 2 Firmware, Intel Dsl6540 Thunderbolt 3 Firmware, Intel Dsl6340 Thunderbolt 3 Firmware, Intel Jhl6540 Thunderbolt 3 Firmware, Intel Jhl6340 Thunderbolt 3 Firmware, Intel Jhl6240 Thunderbolt 3 Firmware, Intel Jhl7540 Thunderbolt 3 Firmware, and Intel Jhl7340 Thunderbolt 3 Firmware are affected.
CVE-2019-14630 has a severity value of 4.6, which is considered medium.
You can find the official reference for CVE-2019-14630 at this [link](https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00411.html).
To mitigate the CVE-2019-14630 vulnerability, it is recommended to apply the latest firmware updates provided by Intel.