SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2019-11184

A race condition in specific microprocessors using Intel (R) DDIO cache allocation and RDMA may allow an authenticated user to potentially enable partial information disclosure via adjacent access.

MEDIUM 4.8EPSS 0.75%

Does this matter?

Lower severity and a low EPSS score (0.75%). Track it; it rarely justifies an emergency change on its own.

Description

A race condition in specific microprocessors using Intel (R) DDIO cache allocation and RDMA may allow an authenticated user to potentially enable partial information disclosure via adjacent access.

CVSS 3.1
4.8 MEDIUMCVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
EPSS
0.75% probability · 53th percentile
CISA KEV
Not listed
Weakness
CWE-362
Affected
intel/6138 firmware · intel/6130t firmware · intel/6130 firmware · intel/6126t firmware · intel/6126 firmware · intel/5120t firmware · intel/5119t firmware · intel/5118 firmware · intel/4116t firmware · intel/4116 firmware · intel/4114t firmware · intel/4110 firmware · intel/4109t firmware · intel/3106 firmware · intel/xeon e5-1428l firmware · intel/xeon e5-2403 firmware · intel/xeon e5-2407 firmware · intel/xeon e5-2418l firmware · intel/xeon e5-2420 firmware · intel/xeon e5-2428l firmware · +40 more
Source
secure@intel.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.