Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2018-3619


Information disclosure vulnerability in storage media in systems with Intel Optane memory module with Whole Disk Encryption may allow an attacker to recover data via physical access.


Security Impact Summary

This vulnerability carries a MEDIUM severity rating with a CVSS v3.1 score of 4.6, with relatively low complexity without requiring user interaction and does not require pre-existing privileges . The vulnerability impacts confidentiality (data exposure), for affected systems. Impacting 17 products from intel, from intel, from intel and 14 others, organizations running these solutions should prioritize assessment and patching.

Historical Context

First disclosed in 2018, this vulnerability was reported during a period defined by widespread IoT adoption challenges, mobile security concerns, and the emergence of advanced persistent threat (APT) techniques. Contemporary mitigation strategies focused on secure development practices and third-party component vetting.


Published

2018-07-10T21:29:00.763

Last Modified

2024-11-21T04:05:46.863

Status

Modified

Source

[email protected]

Severity

CVSSv3.0: 4.6 (MEDIUM)

CVSSv2 Vector

AV:L/AC:L/Au:N/C:P/I:N/A:N

  • Access Vector: LOCAL
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: PARTIAL
  • Integrity Impact: NONE
  • Availability Impact: NONE
Exploitability Score

3.9

Impact Score

2.9

Weaknesses
  • Type: Primary
    CWE-200

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Hardware intel core_i7 7y75 Yes
Hardware intel core_i7 7500u Yes
Hardware intel core_i7 7560u Yes
Hardware intel core_i7 7567u Yes
Hardware intel core_i7 7600u Yes
Hardware intel core_i7 7660u Yes
Hardware intel core_i7 7700 Yes
Hardware intel core_i7 7700hq Yes
Hardware intel core_i7 7700k Yes
Hardware intel core_i7 7700t Yes
Hardware intel core_i7 7820eq Yes
Hardware intel core_i7 7820hk Yes
Hardware intel core_i7 7820hq Yes
Hardware intel core_i7 7920hq Yes
Hardware intel core_i7 8086k Yes
Hardware intel core_i7 8500y Yes
Hardware intel core_i7 8550u Yes
Hardware intel core_i7 8559u Yes
Hardware intel core_i7 8565u Yes
Hardware intel core_i7 8650u Yes
Hardware intel core_i7 8700 Yes
Hardware intel core_i7 8700b Yes
Hardware intel core_i7 8700k Yes
Hardware intel core_i7 8700t Yes
Hardware intel core_i7 8705g Yes
Hardware intel core_i7 8706g Yes
Hardware intel core_i7 8709g Yes
Hardware intel core_i7 8750h Yes
Hardware intel core_i7 8809g Yes
Hardware intel core_i7 8850h Yes
Hardware intel core_i5 7y54 Yes
Hardware intel core_i5 7y57 Yes
Hardware intel core_i5 7200u Yes
Hardware intel core_i5 7260u Yes
Hardware intel core_i5 7267u Yes
Hardware intel core_i5 7287u Yes
Hardware intel core_i5 7300hq Yes
Hardware intel core_i5 7300u Yes
Hardware intel core_i5 7360u Yes
Hardware intel core_i5 7400 Yes
Hardware intel core_i5 7400t Yes
Hardware intel core_i5 7440eq Yes
Hardware intel core_i5 7440hq Yes
Hardware intel core_i5 7442eq Yes
Hardware intel core_i5 7500 Yes
Hardware intel core_i5 7500t Yes
Hardware intel core_i5 7600 Yes
Hardware intel core_i5 7600k Yes
Hardware intel core_i5 7600t Yes
Hardware intel core_i5 8200y Yes
Hardware intel core_i5 8250u Yes
Hardware intel core_i5 8259u Yes
Hardware intel core_i5 8265u Yes
Hardware intel core_i5 8269u Yes
Hardware intel core_i5 8300h Yes
Hardware intel core_i5 8305g Yes
Hardware intel core_i5 8350u Yes
Hardware intel core_i5 8400 Yes
Hardware intel core_i5 8400b Yes
Hardware intel core_i5 8400h Yes
Hardware intel core_i5 8400t Yes
Hardware intel core_i5 8500 Yes
Hardware intel core_i5 8500b Yes
Hardware intel core_i5 8500t Yes
Hardware intel core_i5 8600 Yes
Hardware intel core_i5 8600k Yes
Hardware intel core_i5 8600t Yes
Hardware intel core_i3 7020u Yes
Hardware intel core_i3 7100 Yes
Hardware intel core_i3 7100e Yes
Hardware intel core_i3 7100h Yes
Hardware intel core_i3 7100t Yes
Hardware intel core_i3 7100u Yes
Hardware intel core_i3 7101e Yes
Hardware intel core_i3 7101te Yes
Hardware intel core_i3 7102e Yes
Hardware intel core_i3 7130u Yes
Hardware intel core_i3 7167u Yes
Hardware intel core_i3 7300 Yes
Hardware intel core_i3 7300t Yes
Hardware intel core_i3 7320 Yes
Hardware intel core_i3 7350k Yes
Hardware intel core_i3 8100 Yes
Hardware intel core_i3 8100h Yes
Hardware intel core_i3 8100t Yes
Hardware intel core_i3 8109u Yes
Hardware intel core_i3 8130u Yes
Hardware intel core_i3 8145u Yes
Hardware intel core_i3 8300 Yes
Hardware intel core_i3 8300t Yes
Hardware intel core_i3 8350k Yes
Hardware intel core_i9 8950hk Yes
Hardware intel core_m3 8100y Yes
Hardware intel core_i5 7640x Yes
Hardware intel core_i7 3820 Yes
Hardware intel core_i7 3920xm Yes
Hardware intel core_i7 3930k Yes
Hardware intel core_i7 3940xm Yes
Hardware intel core_i7 3960x Yes
Hardware intel core_i7 3970x Yes
Hardware intel core_i7 4820k Yes
Hardware intel core_i7 4930k Yes
Hardware intel core_i7 4930mx Yes
Hardware intel core_i7 4940mx Yes
Hardware intel core_i7 4960x Yes
Hardware intel core_i7 5820k Yes
Hardware intel core_i7 5930k Yes
Hardware intel core_i7 5960x Yes
Hardware intel core_i7 6800k Yes
Hardware intel core_i7 6850k Yes
Hardware intel core_i7 6900k Yes
Hardware intel core_i7 6950x Yes
Hardware intel core_i7 7740x Yes
Hardware intel core_i7 7800x Yes
Hardware intel core_i7 7820x Yes
Hardware intel core_i9 7900x Yes
Hardware intel core_i9 7920x Yes
Hardware intel core_i9 7940x Yes
Hardware intel core_i9 7960x Yes
Hardware intel core_i9 7980xe Yes
Hardware intel xeon_e-2124 - Yes
Hardware intel xeon_e-2124g - Yes
Hardware intel xeon_e-2126g - Yes
Hardware intel xeon_e-2134 - Yes
Hardware intel xeon_e-2136 - Yes
Hardware intel xeon_e-2144g - Yes
Hardware intel xeon_e-2146g - Yes
Hardware intel xeon_e-2174g - Yes
Hardware intel xeon_e-2176g - Yes
Hardware intel xeon_e-2176m - Yes
Hardware intel xeon_e-2186g - Yes
Hardware intel xeon_e-2186m - Yes

References

How SecUtils Interprets This CVE

SecUtils normalizes and enriches National Vulnerability Database (NVD) records by standardizing vendor and product identifiers, aggregating vulnerability metadata from both NVD and MITRE sources, and providing structured context for security teams. For intel's affected products, we extract Common Platform Enumeration (CPE) data, Common Weakness Enumeration (CWE) classifications, CVSS severity metrics, and reference data to enable rapid vulnerability prioritization and asset correlation. This record contains no exploit code, proof-of-concept instructions, or attack methodologies—only defensive intelligence necessary for patch management, risk assessment, and security operations.