ID

VAR-201807-1705


CVE

CVE-2018-3619


TITLE

Intel Optane Memory module Whole Disk Encryption Vulnerable to information disclosure

Trust: 0.8

sources: JVNDB: JVNDB-2018-007984

DESCRIPTION

Information disclosure vulnerability in storage media in systems with Intel Optane memory module with Whole Disk Encryption may allow an attacker to recover data via physical access. An attacker could exploit this vulnerability to obtain data. The following products are affected: Intel 7th Gen Intel Core Desktop Processors; 8th Gen Intel Core Desktop Processors; 8th Gen Intel Core Mobile Processors; Intel Core X-Series Processors; Intel Xeon® E Processors

Trust: 1.71

sources: NVD: CVE-2018-3619 // JVNDB: JVNDB-2018-007984 // VULHUB: VHN-133650

AFFECTED PRODUCTS

vendor:intelmodel:core i5scope:eqversion:8265u

Trust: 1.6

vendor:intelmodel:core i5scope:eqversion:8259u

Trust: 1.6

vendor:intelmodel:core i5scope:eqversion:7640x

Trust: 1.6

vendor:intelmodel:core i5scope:eqversion:8300h

Trust: 1.6

vendor:intelmodel:core i7scope:eqversion:3820

Trust: 1.6

vendor:intelmodel:core i5scope:eqversion:7y54

Trust: 1.6

vendor:intelmodel:core i5scope:eqversion:8350u

Trust: 1.6

vendor:intelmodel:core i7scope:eqversion:3920xm

Trust: 1.6

vendor:intelmodel:core i5scope:eqversion:8269u

Trust: 1.6

vendor:intelmodel:core i5scope:eqversion:8305g

Trust: 1.6

vendor:intelmodel:core i5scope:eqversion:8600

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:7600u

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:8500y

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:7600

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:8400

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:8700t

Trust: 1.0

vendor:intelmodel:core i3scope:eqversion:8100h

Trust: 1.0

vendor:intelmodel:xeon e-2124gscope:eqversion: -

Trust: 1.0

vendor:intelmodel:xeon e-2144gscope:eqversion: -

Trust: 1.0

vendor:intelmodel:xeon e-2136scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:8550u

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:3970x

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:8850h

Trust: 1.0

vendor:intelmodel:core i3scope:eqversion:8300t

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:7267u

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:8650u

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:4820k

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:7820hq

Trust: 1.0

vendor:intelmodel:core i3scope:eqversion:8100

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:7560u

Trust: 1.0

vendor:intelmodel:xeon e-2126gscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:3940xm

Trust: 1.0

vendor:intelmodel:core i3scope:eqversion:7020u

Trust: 1.0

vendor:intelmodel:core i3scope:eqversion:7101te

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:8500

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:7y75

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:7600k

Trust: 1.0

vendor:intelmodel:xeon e-2176mscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9scope:eqversion:7960x

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:7820eq

Trust: 1.0

vendor:intelmodel:core i3scope:eqversion:7101e

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:8709g

Trust: 1.0

vendor:intelmodel:xeon e-2176gscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:7700hq

Trust: 1.0

vendor:intelmodel:core i3scope:eqversion:7300t

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:8500t

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:8700k

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:7740x

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:6850k

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:8559u

Trust: 1.0

vendor:intelmodel:xeon e-2124scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:7300u

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:8400t

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:7440hq

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:8400b

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:7287u

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:7400t

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:7700k

Trust: 1.0

vendor:intelmodel:core i3scope:eqversion:7300

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:8809g

Trust: 1.0

vendor:intelmodel:core i3scope:eqversion:7167u

Trust: 1.0

vendor:intelmodel:xeon e-2146gscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3scope:eqversion:7100t

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:6900k

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:8706g

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:7300hq

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:8086k

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:4930mx

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:7800x

Trust: 1.0

vendor:intelmodel:core i9scope:eqversion:7900x

Trust: 1.0

vendor:intelmodel:core i3scope:eqversion:8130u

Trust: 1.0

vendor:intelmodel:core i3scope:eqversion:8100t

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:6800k

Trust: 1.0

vendor:intelmodel:core i3scope:eqversion:7130u

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:6950x

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:7600t

Trust: 1.0

vendor:intelmodel:core i3scope:eqversion:8109u

Trust: 1.0

vendor:intelmodel:xeon e-2186gscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i9scope:eqversion:7940x

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:4930k

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:8500b

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:8200y

Trust: 1.0

vendor:intelmodel:core i3scope:eqversion:8145u

Trust: 1.0

vendor:intelmodel:xeon e-2186mscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:7700

Trust: 1.0

vendor:intelmodel:core i3scope:eqversion:7100h

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:8700

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:7567u

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:7360u

Trust: 1.0

vendor:intelmodel:core i3scope:eqversion:7320

Trust: 1.0

vendor:intelmodel:core m3scope:eqversion:8100y

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:3960x

Trust: 1.0

vendor:intelmodel:core i3scope:eqversion:7350k

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:7820hk

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:4960x

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:5960x

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:8705g

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:7700t

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:8600t

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:5930k

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:4940mx

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:5820k

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:7820x

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:8565u

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:7500u

Trust: 1.0

vendor:intelmodel:core i3scope:eqversion:7102e

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:8250u

Trust: 1.0

vendor:intelmodel:xeon e-2134scope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i3scope:eqversion:7100

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:8700b

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:7920hq

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:7260u

Trust: 1.0

vendor:intelmodel:core i3scope:eqversion:8350k

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:3930k

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:8750h

Trust: 1.0

vendor:intelmodel:core i9scope:eqversion:7920x

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:7y57

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:7442eq

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:7500t

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:7500

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:8400h

Trust: 1.0

vendor:intelmodel:core i9scope:eqversion:7980xe

Trust: 1.0

vendor:intelmodel:xeon e-2174gscope:eqversion: -

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:7400

Trust: 1.0

vendor:intelmodel:core i3scope:eqversion:7100u

Trust: 1.0

vendor:intelmodel:core i3scope:eqversion:8300

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:7440eq

Trust: 1.0

vendor:intelmodel:core i7scope:eqversion:7660u

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:7200u

Trust: 1.0

vendor:intelmodel:core i5scope:eqversion:8600k

Trust: 1.0

vendor:intelmodel:core i3scope:eqversion:7100e

Trust: 1.0

vendor:intelmodel:core i9scope:eqversion:8950hk

Trust: 1.0

vendor:intelmodel:core i3scope: - version: -

Trust: 0.8

vendor:intelmodel:core i5scope: - version: -

Trust: 0.8

vendor:intelmodel:core i7scope: - version: -

Trust: 0.8

vendor:intelmodel:core i9scope: - version: -

Trust: 0.8

vendor:intelmodel:core m3scope: - version: -

Trust: 0.8

vendor:intelmodel:xeon escope: - version: -

Trust: 0.8

sources: JVNDB: JVNDB-2018-007984 // CNNVD: CNNVD-201807-897 // NVD: CVE-2018-3619

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2018-3619
value: MEDIUM

Trust: 1.0

NVD: CVE-2018-3619
value: MEDIUM

Trust: 0.8

CNNVD: CNNVD-201807-897
value: MEDIUM

Trust: 0.6

VULHUB: VHN-133650
value: LOW

Trust: 0.1

nvd@nist.gov: CVE-2018-3619
severity: LOW
baseScore: 2.1
vectorString: AV:L/AC:L/AU:N/C:P/I:N/A:N
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: NONE
availabilityImpact: NONE
exploitabilityScore: 3.9
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

VULHUB: VHN-133650
severity: LOW
baseScore: 2.1
vectorString: AV:L/AC:L/AU:N/C:P/I:N/A:N
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: NONE
availabilityImpact: NONE
exploitabilityScore: 3.9
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

nvd@nist.gov: CVE-2018-3619
baseSeverity: MEDIUM
baseScore: 4.6
vectorString: CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
attackVector: PHYSICAL
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: NONE
availabilityImpact: NONE
exploitabilityScore: 0.9
impactScore: 3.6
version: 3.0

Trust: 1.8

sources: VULHUB: VHN-133650 // JVNDB: JVNDB-2018-007984 // CNNVD: CNNVD-201807-897 // NVD: CVE-2018-3619

PROBLEMTYPE DATA

problemtype:CWE-200

Trust: 1.9

sources: VULHUB: VHN-133650 // JVNDB: JVNDB-2018-007984 // NVD: CVE-2018-3619

THREAT TYPE

local

Trust: 0.6

sources: CNNVD: CNNVD-201807-897

TYPE

information disclosure

Trust: 0.6

sources: CNNVD: CNNVD-201807-897

CONFIGURATIONS

sources: JVNDB: JVNDB-2018-007984

PATCH

title:INTEL-SA-00114url:https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00114.html

Trust: 0.8

sources: JVNDB: JVNDB-2018-007984

EXTERNAL IDS

db:NVDid:CVE-2018-3619

Trust: 2.5

db:JVNDBid:JVNDB-2018-007984

Trust: 0.8

db:CNNVDid:CNNVD-201807-897

Trust: 0.7

db:VULHUBid:VHN-133650

Trust: 0.1

sources: VULHUB: VHN-133650 // JVNDB: JVNDB-2018-007984 // CNNVD: CNNVD-201807-897 // NVD: CVE-2018-3619

REFERENCES

url:https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00114.html

Trust: 1.7

url:https://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2018-3619

Trust: 0.8

url:https://nvd.nist.gov/vuln/detail/cve-2018-3619

Trust: 0.8

sources: VULHUB: VHN-133650 // JVNDB: JVNDB-2018-007984 // CNNVD: CNNVD-201807-897 // NVD: CVE-2018-3619

SOURCES

db:VULHUBid:VHN-133650
db:JVNDBid:JVNDB-2018-007984
db:CNNVDid:CNNVD-201807-897
db:NVDid:CVE-2018-3619

LAST UPDATE DATE

2024-11-23T22:52:01.387000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-133650date:2020-04-28T00:00:00
db:JVNDBid:JVNDB-2018-007984date:2018-10-04T00:00:00
db:CNNVDid:CNNVD-201807-897date:2019-10-23T00:00:00
db:NVDid:CVE-2018-3619date:2024-11-21T04:05:46.863

SOURCES RELEASE DATE

db:VULHUBid:VHN-133650date:2018-07-10T00:00:00
db:JVNDBid:JVNDB-2018-007984date:2018-10-04T00:00:00
db:CNNVDid:CNNVD-201807-897date:2018-07-10T00:00:00
db:NVDid:CVE-2018-3619date:2018-07-10T21:29:00.763