Severity
7.8HIGH
EPSS
0.1%
top 67.86%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 14
Latest updateMay 24

Description

Insufficient access control in a subsystem for Intel (R) processor graphics in 6th, 7th, 8th and 9th Generation Intel(R) Core(TM) Processor Families; Intel(R) Pentium(R) Processor J, N, Silver and Gold Series; Intel(R) Celeron(R) Processor J, N, G3900 and G4900 Series; Intel(R) Atom(R) Processor A and E3900 Series; Intel(R) Xeon(R) Processor E3-1500 v5 and v6, E-2100 and E-2200 Processor Families; Intel(R) Graphics Driver for Windows before 26.20.100.6813 (DCH) or 26.20.100.6812 and before 21.20

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages7 packages

NVDintel/graphics_driver< 26.20.100.6813+6
Debianlinux< 5.3.9-2+3
Ubuntulinux< 4.4.0-169.198+1
Ubuntulinux-hwe< 4.15.0-70.79~16.04.1+1

Also affects: Ubuntu Linux 14.04, Enterprise Linux 7.2, 7.5

🔴Vulnerability Details

6
GHSA
GHSA-8885-wr7g-q9vx: Insufficient access control in a subsystem for Intel (R) processor graphics in 6th, 7th, 8th and 9th Generation Intel(R) Core(TM) Processor Families;2022-05-24
OSV
CVE-2019-0155: Insufficient access control in a subsystem for Intel (R) processor graphics in 6th, 7th, 8th and 9th Generation Intel(R) Core(TM) Processor Families;2019-11-14
CVEList
CVE-2019-0155: Insufficient access control in a subsystem for Intel (R) processor graphics in 6th, 7th, 8th and 9th Generation Intel(R) Core(TM) Processor Families;2019-11-14
OSV
linux vulnerability2019-11-13
OSV
linux, linux-hwe, linux-oem-osp1 vulnerability and regression2019-11-13

📋Vendor Advisories

11
Ubuntu
Linux kernel vulnerabilities2019-11-13
Ubuntu
Linux kernel vulnerability and regression2019-11-13
Ubuntu
Linux kernel vulnerabilities2019-11-13
Ubuntu
Linux kernel vulnerability and regression2019-11-13
Ubuntu
Linux kernel vulnerabilities2019-11-13

💬Community

2
Bugzilla
CVE-2019-0155 kernel: hw: Intel GPU blitter manipulation can allow for arbitrary kernel memory write [fedora-all]2019-11-12
Bugzilla
CVE-2019-0155 hw: Intel GPU blitter manipulation can allow for arbitrary kernel memory write2019-06-27