CVE-2019-0174 is a low-severity logic condition vulnerability affecting specific Intel microprocessors. An authenticated local user could potentially disclose partial physical address information. The CVSS score is 3.3, indicating low impact on confidentiality and no impact on integrity or availability, with low attack complexity. While no public exploit code exists (Metasploit, Nuclei, ExploitDB), community discussion and media coverage (e.g., "RAMBleed") suggest awareness of its potential for sensitive data theft from memory, though it is not currently on the KEV catalog or considered actively exploited.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:intel:i9-9900x_firmware:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:intel:i9-9920x_firmware:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:intel:i9-9960x_firmware:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:intel:i9-9980xe_firmware:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:intel:i9-9940x_firmware:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.