6.7

CVE-2019-14611

Integer overflow in firmware for Intel(R) NUC(R) may allow a privileged user to potentially enable escalation of privilege via local access.

Data is provided by the National Vulnerability Database (NVD)
IntelNuc8i7bek Firmware Version < 0077
   IntelNuc8i7bek Version-
IntelCd1p64gk Firmware Version < 0053
   IntelCd1p64gk Version-
IntelNuc8i3cysm Firmware Version < 0043
   IntelNuc8i3cysm Version-
IntelNuc8i7hnk Firmware Version < 0059
   IntelNuc8i7hnk Version-
IntelNuc7i7dnke Firmware Version < 0067
   IntelNuc7i7dnke Version-
IntelNuc7i5dnke Firmware Version < 0067
   IntelNuc7i5dnke Version-
IntelNuc7i3dnhe Firmware Version < 0067
   IntelNuc7i3dnhe Version-
IntelStk2mv64cc Firmware Version < 0061
   IntelStk2mv64cc Version-
IntelStk2m3w64cc Firmware Version < 0062
   IntelStk2m3w64cc Version-
IntelNuc6i7kyk Firmware Version < 0066
   IntelNuc6i7kyk Version-
IntelNuc6i5syh Firmware Version < 0072
   IntelNuc6i5syh Version-
IntelNuc7cjyh Firmware Version < 0053
   IntelNuc7cjyh Version-
IntelCd1m3128mk Firmware Version < 0058
   IntelCd1m3128mk Version-
IntelCd1iv128mk Firmware Version < 0038
   IntelCd1iv128mk Version-
IntelNuc6cays Firmware Version < 0064
   IntelNuc6cays Version-
IntelDe3815tybe Firmware Version < 0024
   IntelDe3815tybe Version-
IntelD34010wyb Firmware Version < 0054
   IntelD34010wyb Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.13% 0.343
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 6.7 0.8 5.9
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 4.6 3.9 6.4
AV:L/AC:L/Au:N/C:P/I:P/A:P
CWE-190 Integer Overflow or Wraparound

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.