Improper Access Control in Intel® FPGA Programmable Acceleration Card N3000
CVE-2019-14626

6.7MEDIUM

Key Information:

Vendor
Intel
Vendor
CVE Published:
12 March 2020

Summary

Improper access control in the PCIe functionality of the Intel® FPGA Programmable Acceleration Card N3000 could allow a privileged user to potentially escalate their privileges through local access. This vulnerability affects all versions of the card, highlighting a critical need for heightened security measures and oversight in environments utilizing this hardware.

Affected Version(s)

Intel(R) FPGA Programmable Acceleration Card N3000 All versions

Intel(R) FPGA Programmable Acceleration Card N3000 See advisory https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00319.html

References

CVSS V3.1

Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.