4.9

CVE-2019-10636

Marvell SSD Controller (88SS1074, 88SS1079, 88SS1080, 88SS1093, 88SS1092, 88SS1095, 88SS9174, 88SS9175, 88SS9187, 88SS9188, 88SS9189, 88SS9190, 88SS1085, 88SS1087, 88SS1090, 88SS1100, 88SS1084, 88SS1088, & 88SS1098) devices allow reprogramming flash memory to bypass the secure boot protection mechanism.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Marvell88ss1074 Firmware Version-
   Marvell88ss1074 Version-
Marvell88ss1079 Firmware Version-
   Marvell88ss1079 Version-
Marvell88ss1080 Firmware Version-
   Marvell88ss1080 Version-
Marvell88ss1093 Firmware Version-
   Marvell88ss1093 Version-
Marvell88ss1092 Firmware Version-
   Marvell88ss1092 Version-
Marvell88ss1095 Firmware Version-
   Marvell88ss1095 Version-
Marvell88ss9174 Firmware Version-
   Marvell88ss9174 Version-
Marvell88ss9175 Firmware Version-
   Marvell88ss9175 Version-
Marvell88ss9187 Firmware Version-
   Marvell88ss9187 Version-
Marvell88ss9188 Firmware Version-
   Marvell88ss9188 Version-
Marvell88ss9189 Firmware Version-
   Marvell88ss9189 Version-
Marvell88ss9190 Firmware Version-
   Marvell88ss9190 Version-
Marvell88ss1085 Firmware Version-
   Marvell88ss1085 Version-
Marvell88ss1087 Firmware Version-
   Marvell88ss1087 Version-
Marvell88ss1090 Firmware Version-
   Marvell88ss1090 Version-
Marvell88ss1100 Firmware Version-
   Marvell88ss1100 Version-
Marvell88ss1084 Firmware Version-
   Marvell88ss1084 Version-
Marvell88ss1088 Firmware Version-
   Marvell88ss1088 Version-
Marvell88ss1098 Firmware Version-
   Marvell88ss1098 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.06% 0.159
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 4.6 0.9 3.6
CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
nvd@nist.gov 4.9 3.9 6.9
AV:L/AC:L/Au:N/C:N/I:C/A:N
CWE-400 Uncontrolled Resource Consumption

The product does not properly control the allocation and maintenance of a limited resource, thereby enabling an actor to influence the amount of resources consumed, eventually leading to the exhaustion of available resources.