Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2019-11139


Improper conditions check in the voltage modulation interface for some Intel(R) Xeon(R) Scalable Processors may allow a privileged user to potentially enable denial of service via local access.


Security Impact Summary

This vulnerability carries a MEDIUM severity rating with a CVSS v3.1 score of 6.0, requiring local system access to exploit with relatively low complexity without requiring user interaction . The vulnerability impacts and availability (service disruption) for affected systems. Impacting 116 products from debian, from opensuse, from intel and 113 others, organizations running these solutions should prioritize assessment and patching.

Historical Context

First disclosed in 2019, this vulnerability was reported during a period defined by widespread IoT adoption challenges, mobile security concerns, and the emergence of advanced persistent threat (APT) techniques. Contemporary mitigation strategies focused on secure development practices and third-party component vetting.


Published

2019-11-14T19:15:13.190

Last Modified

2024-11-21T04:20:36.767

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.0 (MEDIUM)

CVSSv2 Vector

AV:L/AC:L/Au:N/C:N/I:N/A:P

  • Access Vector: LOCAL
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: NONE
  • Availability Impact: PARTIAL
Exploitability Score

3.9

Impact Score

2.9

Weaknesses
  • Type: Primary
    CWE-754

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System debian debian_linux 8.0 Yes
Operating System opensuse leap 15.0 Yes
Operating System opensuse leap 15.1 Yes
Operating System intel xeon_8153_firmware - Yes
Hardware intel xeon_8153 - No
Operating System intel xeon_8156_firmware - Yes
Hardware intel xeon_8156 - No
Operating System intel xeon_8158_firmware - Yes
Hardware intel xeon_8158 - No
Operating System intel xeon_8160_firmware - Yes
Hardware intel xeon_8160 - No
Operating System intel xeon_8160f_firmware - Yes
Hardware intel xeon_8160f - No
Operating System intel xeon_8160m_firmware - Yes
Hardware intel xeon_8160m - No
Operating System intel xeon_8160t_firmware - Yes
Hardware intel xeon_8160t - No
Operating System intel xeon_8164_firmware - Yes
Hardware intel xeon_8164 - No
Operating System intel xeon_8168_firmware - Yes
Hardware intel xeon_8168 - No
Operating System intel xeon_8170_firmware - Yes
Hardware intel xeon_8170 - No
Operating System intel xeon_8170m_firmware - Yes
Hardware intel xeon_8170m - No
Operating System intel xeon_8176_firmware - Yes
Hardware intel xeon_8176 - No
Operating System intel xeon_8176f_firmware - Yes
Hardware intel xeon_8176f - No
Operating System intel xeon_8176m_firmware - Yes
Hardware intel xeon_8176m - No
Operating System intel xeon_8180_firmware - Yes
Hardware intel xeon_8180 - No
Operating System intel xeon_8180m_firmware - Yes
Hardware intel xeon_8180m - No
Operating System intel xeon_5115_firmware - Yes
Hardware intel xeon_5115 - No
Operating System intel xeon_5118_firmware - Yes
Hardware intel xeon_5118 - No
Operating System intel xeon_5119t_firmware - Yes
Hardware intel xeon_5119t - No
Operating System intel xeon_5120_firmware - Yes
Hardware intel xeon_5120 - No
Operating System intel xeon_5120t_firmware - Yes
Hardware intel xeon_5120t - No
Operating System intel xeon_5122_firmware - Yes
Hardware intel xeon_5122 - No
Operating System intel xeon_6126_firmware - Yes
Hardware intel xeon_6126 - No
Operating System intel xeon_6126f_firmware - Yes
Hardware intel xeon_6126f - No
Operating System intel xeon_6126t_firmware - Yes
Hardware intel xeon_6126t - No
Operating System intel xeon_6128_firmware - Yes
Hardware intel xeon_6128 - No
Operating System intel xeon_6130_firmware - Yes
Hardware intel xeon_6130 - No
Operating System intel xeon_6130f_firmware - Yes
Hardware intel xeon_6130f - No
Operating System intel xeon_6130t_firmware - Yes
Hardware intel xeon_6130t - No
Operating System intel xeon_6132_firmware - Yes
Hardware intel xeon_6132 - No
Operating System intel xeon_6134_firmware - Yes
Hardware intel xeon_6134 - No
Operating System intel xeon_6134m_firmware - Yes
Hardware intel xeon_6134m - No
Operating System intel xeon_6136_firmware - Yes
Hardware intel xeon_6136 - No
Operating System intel xeon_6138_firmware - Yes
Hardware intel xeon_6138 - No
Operating System intel xeon_6138f_firmware - Yes
Hardware intel xeon_6138f - No
Operating System intel xeon_6138t_firmware - Yes
Hardware intel xeon_6138t - No
Operating System intel xeon_6140_firmware - Yes
Hardware intel xeon_6140 - No
Operating System intel xeon_6140m_firmware - Yes
Hardware intel xeon_6140m - No
Operating System intel xeon_6142_firmware - Yes
Hardware intel xeon_6142 - No
Operating System intel xeon_6142f_firmware - Yes
Hardware intel xeon_6142f - No
Operating System intel xeon_6144_firmware - Yes
Hardware intel xeon_6144 - No
Operating System intel xeon_6146_firmware - Yes
Hardware intel xeon_6146 - No
Operating System intel xeon_6148_firmware - Yes
Hardware intel xeon_6148 - No
Operating System intel xeon_6148f_firmware - Yes
Hardware intel xeon_6148f - No
Operating System intel xeon_6150_firmware - Yes
Hardware intel xeon_6150 - No
Operating System intel xeon_6152_firmware - Yes
Hardware intel xeon_6152 - No
Operating System intel xeon_6154_firmware - Yes
Hardware intel xeon_6154 - No
Operating System intel xeon_4108_firmware - Yes
Hardware intel xeon_4108 - No
Operating System intel xeon_4109t_firmware - Yes
Hardware intel xeon_4109t - No
Operating System intel xeon_4110_firmware - Yes
Hardware intel xeon_4110 - No
Operating System intel xeon_4112_firmware - Yes
Hardware intel xeon_4112 - No
Operating System intel xeon_4114_firmware - Yes
Hardware intel xeon_4114 - No
Operating System intel xeon_4114t_firmware - Yes
Hardware intel xeon_4114t - No
Operating System intel xeon_4116_firmware - Yes
Hardware intel xeon_4116 - No
Operating System intel xeon_4116t_firmware - Yes
Hardware intel xeon_4116t - No
Operating System intel xeon_3104_firmware - Yes
Hardware intel xeon_3104 - No
Operating System intel xeon_3106_firmware - Yes
Hardware intel xeon_3106 - No

References

How SecUtils Interprets This CVE

SecUtils normalizes and enriches National Vulnerability Database (NVD) records by standardizing vendor and product identifiers, aggregating vulnerability metadata from both NVD and MITRE sources, and providing structured context for security teams. For debian's affected products, we extract Common Platform Enumeration (CPE) data, Common Weakness Enumeration (CWE) classifications, CVSS severity metrics, and reference data to enable rapid vulnerability prioritization and asset correlation. This record contains no exploit code, proof-of-concept instructions, or attack methodologies—only defensive intelligence necessary for patch management, risk assessment, and security operations.