MEDIUM · 5.5

CVE-2019-0154

Insufficient access control in subsystem for Intel (R) processor graphics in 6th, 7th, 8th and 9th Generation Intel(R) Core(TM) Processor Families; Intel(R) Pentium(R) Processor J, N, Silver and Gold ...

Vulnerability Description

Insufficient access control in subsystem for Intel (R) processor graphics in 6th, 7th, 8th and 9th Generation Intel(R) Core(TM) Processor Families; Intel(R) Pentium(R) Processor J, N, Silver and Gold Series; Intel(R) Celeron(R) Processor J, N, G3900 and G4900 Series; Intel(R) Atom(R) Processor A and E3900 Series; Intel(R) Xeon(R) Processor E3-1500 v5 and v6 and E-2100 Processor Families may allow an authenticated user to potentially enable denial of service via local access.

CVSS Score

5.5

MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
NONE
Availability
HIGH

Affected Products

VendorProductVersions
CanonicalUbuntu Linux14.04
IntelPentium J4205 Firmware< 26.20.100.6859
IntelPentium J4205-
IntelPentium N4200 Firmware< 26.20.100.6859
IntelPentium N4200-
IntelCeleron J3355 Firmware< 26.20.100.6859
IntelCeleron J3355-
IntelCeleron J3455 Firmware< 26.20.100.6859
IntelCeleron J3455-
IntelCeleron N3350 Firmware< 26.20.100.6859
IntelCeleron N3350-
IntelCeleron N3450 Firmware< 26.20.100.6859
IntelCeleron N3450-
IntelAtom X5-A3930 Firmware< 26.20.100.6859
IntelAtom X5-A3930-
IntelAtom X5-A3940 Firmware< 26.20.100.6859
IntelAtom X5-A3940-
IntelAtom X7-A3950 Firmware< 26.20.100.6859
IntelAtom X7-A3950-
IntelPentium Silver J5005 Firmware< 26.20.100.6859

References

FAQ

What is CVE-2019-0154?

CVE-2019-0154 is a vulnerability with a CVSS score of 5.5 (MEDIUM). Insufficient access control in subsystem for Intel (R) processor graphics in 6th, 7th, 8th and 9th Generation Intel(R) Core(TM) Processor Families; Intel(R) Pentium(R) Processor J, N, Silver and Gold ...

How severe is CVE-2019-0154?

CVE-2019-0154 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2019-0154?

Check the references section above for vendor advisories and patch information. Affected products include: Canonical Ubuntu Linux, Intel Pentium J4205 Firmware, Intel Pentium J4205, Intel Pentium N4200 Firmware, Intel Pentium N4200.