8

CVE-2019-14557

Buffer overflow in BIOS firmware for 8th, 9th, 10th Generation Intel(R) Core(TM), Intel(R) Celeron(R) Processor 4000 & 5000 Series Processors may allow an authenticated user to potentially enable elevation of privilege or denial of service via adjacent access.

Data is provided by the National Vulnerability Database (NVD)
IntelBios Version-
   IntelCeleron 4205u Version-
   IntelCeleron 4305u Version-
   IntelCeleron 4305ue Version-
   IntelCeleron 5205u Version-
   IntelCeleron 5305u Version-
   IntelCore I3 8100 Version-
   IntelCore I3 8100f Version-
   IntelCore I3 8100t Version-
   IntelCore I3 8300 Version-
   IntelCore I3 8300t Version-
   IntelCore I3 8350k Version-
   IntelCore I3 9100 Version-
   IntelCore I3 9100f Version-
   IntelCore I3 9100t Version-
   IntelCore I3 9300 Version-
   IntelCore I3 9300t Version-
   IntelCore I3 9320 Version-
   IntelCore I3 9350k Version-
   IntelCore I3 9350kf Version-
   IntelCore I5 8400 Version-
   IntelCore I5 8400t Version-
   IntelCore I5 8500 Version-
   IntelCore I5 8500t Version-
   IntelCore I5 8600 Version-
   IntelCore I5 8600k Version-
   IntelCore I5 8600t Version-
   IntelCore I5 9400 Version-
   IntelCore I5 9400f Version-
   IntelCore I5 9400t Version-
   IntelCore I5 9500 Version-
   IntelCore I5 9500f Version-
   IntelCore I5 9500t Version-
   IntelCore I5 9600 Version-
   IntelCore I5 9600k Version-
   IntelCore I5 9600kf Version-
   IntelCore I5 9600t Version-
   IntelCore I7 1060g7 Version-
   IntelCore I7 1060ng7 Version-
   IntelCore I7 1065g7 Version-
   IntelCore I7 1068ng7 Version-
   IntelCore I7 8086k Version-
   IntelCore I7 8700 Version-
   IntelCore I7 8700k Version-
   IntelCore I7 8700t Version-
   IntelCore I7 9700 Version-
   IntelCore I7 9700f Version-
   IntelCore I7 9700k Version-
   IntelCore I7 9700kf Version-
   IntelCore I7 9700t Version-
   IntelCore I9 9900 Version-
   IntelCore I9 9900k Version-
   IntelCore I9 9900kf Version-
   IntelCore I9 9900ks Version-
   IntelCore I9 9900t Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.14% 0.311
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 8 2.1 5.9
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 5.2 5.1 6.4
AV:A/AC:L/Au:S/C:P/I:P/A:P
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.