← Vulnerability feed

Vulnerability record · CVE-2019-0123 · published 14 November 2019

CVE-2019-0123: Intel core i7-6970hq firmware vulnerability

Intel · Core I7 6970hq Firmware

Insufficient memory protection in Intel(R) 6th Generation Core Processors and greater, supporting SGX, may allow a privileged user to potentially enable escalation of privilege via local access.

7.8 CVSS 3.1 High EPSS 0.38% · top 70.8%
7.8CVSS 3.1 base score, v2 7.2
0.38%EPSS exploitation probability, 30 days
NoNot in CISA KEV
147Affected product versions listed by NVD
4References
17 Jun 2026Last modified by NVD

Description

Insufficient memory protection in Intel(R) 6th Generation Core Processors and greater, supporting SGX, may allow a privileged user to potentially enable escalation of privilege via local access.

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected products

147 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2019-0123 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

8.0CVE-2022-44611Intel celeron j6413 firmware improper input validation vulnerabilityImproper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege…EPSS 0.35%7.8CVE-2023-23583Intel core i3-10100y firmware incorrect default permissions vulnerabilitySequence of processor instructions leads to unexpected behavior for some Intel(R) Processors may allow an authenticated user to potentially enable es…EPSS 1.7%7.8CVE-2022-33894Intel xeon e-2314 firmware improper input validation vulnerabilityImproper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege…EPSS 0.25%7.8CVE-2021-33122Intel xeon e-2386g firmware vulnerabilityInsufficient control flow management in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable aescalation …EPSS 0.26%7.8CVE-2020-0529Intel core i5-7600k firmware vulnerabilityImproper initialization in BIOS firmware for 8th, 9th and 10th Generation Intel(R) Core(TM) Processor families may allow an unauthenticated user to p…EPSS 0.36%7.8CVE-2020-0528Intel core i5-7600k firmware vulnerabilityImproper buffer restrictions in BIOS firmware for 7th, 8th, 9th and 10th Generation Intel(R) Core(TM) Processor families may allow an authenticated u…EPSS 0.35%7.8CVE-2020-0110Google android out-of-bounds write vulnerabilityIn psi_write of psi.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with n…EPSS 0.18%7.8CVE-2019-0124Intel core i7-6970hq firmware vulnerabilityInsufficient memory protection in Intel(R) 6th Generation Core Processors and greater, supporting TXT, may allow a privileged user to potentially ena…EPSS 0.36%

Source: NIST National Vulnerability Database (record CVE-2019-0123), CISA KEV, FIRST EPSS (scores of 2026-10-03). This page is refreshed as NVD updates the record.