Vulnerabilities > Intel > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-05-30 CVE-2018-12126 Information Exposure vulnerability in multiple products
Microarchitectural Store Buffer Data Sampling (MSBDS): Store buffers on some microprocessors utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access.
local
high complexity
intel fedoraproject CWE-200
5.6
2019-05-17 CVE-2019-11114 Improper Input Validation vulnerability in Intel Driver & Support Assistant 19.3.12.3/3.1.1/3.5.0.1
Insufficient input validation in Intel(R) Driver & Support Assistant version 19.3.12.3 and before may allow a privileged user to potentially enable denial of service via local access.
local
low complexity
intel CWE-20
4.4
2019-05-17 CVE-2019-11095 Unspecified vulnerability in Intel Driver & Support Assistant 19.3.12.3/3.1.1/3.5.0.1
Insufficient access control in Intel(R) Driver & Support Assistant version 19.3.12.3 and before may allow a privileged user to potentially enable information disclosure via local access.
local
low complexity
intel
4.4
2019-05-17 CVE-2019-11093 Unquoted Search Path or Element vulnerability in Intel SCS Discovery Utility 12.0.0.129
Unquoted service path in the installer for the Intel(R) SCS Discovery Utility version 12.0.0.129 and earlier may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-428
6.7
2019-05-17 CVE-2019-0170 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel Converged Security Management Engine Firmware
Buffer overflow in subsystem in Intel(R) DAL before version 12.0.35 may allow a privileged user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-119
6.7
2019-05-17 CVE-2019-0126 Unspecified vulnerability in Intel products
Insufficient access control in silicon reference firmware for Intel(R) Xeon(R) Scalable Processor, Intel(R) Xeon(R) Processor D Family may allow a privileged user to potentially enable escalation of privilege and/or denial of service via local access.
local
low complexity
intel
6.7
2019-05-17 CVE-2019-0120 Insufficiently Protected Credentials vulnerability in Intel products
Insufficient key protection vulnerability in silicon reference firmware for Intel(R) Pentium(R) Processor J Series, Intel(R) Pentium(R) Processor N Series, Intel(R) Celeron(R) J Series, Intel(R) Celeron(R) N Series, Intel(R) Atom(R) Processor A Series, Intel(R) Atom(R) Processor E3900 Series, Intel(R) Pentium(R) Processor Silver Series may allow a privileged user to potentially enable denial of service via local access.
local
low complexity
intel CWE-522
4.4
2019-05-17 CVE-2019-0119 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel products
Buffer overflow vulnerability in system firmware for Intel(R) Xeon(R) Processor D Family, Intel(R) Xeon(R) Scalable Processor, Intel(R) Server Board, Intel(R) Server System and Intel(R) Compute Module may allow a privileged user to potentially enable escalation of privilege and/or denial of service via local access.
local
low complexity
intel CWE-119
6.7
2019-05-17 CVE-2019-0116 Out-of-bounds Read vulnerability in Intel Graphics Driver
An out of bound read in KMD module for Intel(R) Graphics Driver before version 10.18.14.5067 (aka 15.36.x.5067) and 10.18.10.5069 (aka 15.33.x.5069) may allow a privileged user to potentially enable denial of service via local access.
local
low complexity
intel CWE-125
4.4
2019-05-17 CVE-2019-0115 Improper Input Validation vulnerability in Intel Graphics Driver
Insufficient input validation in KMD module for Intel(R) Graphics Driver before version 10.18.14.5067 (aka 15.36.x.5067) and 10.18.10.5069 (aka 15.33.x.5069) may allow an authenticated user to potentially enable denial of service via local access.
local
low complexity
intel CWE-20
5.5