Beginning of this page.
Jump to main content.

Please note that JavaScript and style sheet are used in this website,
Due to unadaptability of the style sheet with the browser used in your computer, pages may not look as original.
Even in such a case, however, the contents can be used safely.

Site menu starts here.
Skip site menu.
End of site menu.
Displaying present location in the site.
End of menu.

Security Protection against Processor Vulnerabilities (released by Intel in November 2019)

Published: Dec 27, 2019

Thank you for using NEC Express5800 products

We have been informed of new vulnerabilities of processors supporting speculative and out-of-order executions. The following vulnerabilities may affect our products:

  • CVE ID numbers
    CVE-2018-12207, CVE-2019-0123, CVE-2019-0124, CVE-2019-0131, CVE-2019-0139, CVE-2019-0140, CVE-2019-0142,
    CVE-2019-0143, CVE-2019-0144, CVE-2019-0145, CVE-2019-0146, CVE-2019-0147, CVE-2019-0148, CVE-2019-0149,
    CVE-2019-0150, CVE-2019-0151, CVE-2019-0152, CVE-2019-0165, CVE-2019-0166, CVE-2019-0168, CVE-2019-0169,
    CVE-2019-0184, CVE-2019-11086, CVE-2019-11087, CVE-2019-11088, CVE-2019-11090, CVE-2019-11097,
    CVE-2019-11100, CVE-2019-11101, CVE-2019-11102, CVE-2019-11103, CVE-2019-11104, CVE-2019-11105,
    CVE-2019-11106, CVE-2019-11107, CVE-2019-11108, CVE-2019-11109, CVE-2019-11110, CVE-2019-11131,
    CVE-2019-11132, CVE-2019-11135, CVE-2019-11136, CVE-2019-11137, CVE-2019-11139, CVE-2019-11147

  • Intel advisory numbers
    INTEL-SA-00164, INTEL-SA-00210, INTEL-SA-00220, INTEL-SA-00240, INTEL-SA-00241, INTEL-SA-00255,
    INTEL-SA-00270, INTEL-SA-00271, INTEL-SA-00280

Any of our products with these vulnerabilities, if attacked by a malicious program, may lead to a denial of service (DoS) by a remote third party and cause its data to be stolen or falsified.

Please take mitigation measures against the vulnerabilities by checking this page for how to handle them and what our handling status is.

About the vulnerabilities

Exploiting any of the following vulnerabilities, an attack may lead to a DoS by a remote third party and cause the data of the affected device to be stolen from its memory or to be falsified:

< Vulnerability information reported in November 2019:INTEL-SA-00164, INTEL-SA-00210, INTEL-SA-00220, INTEL-SA-00240, INTEL-SA-00241, INTEL-SA-00255, INTEL-SA-00270, INTEL-SA-00271, INTEL-SA-00280, INTEL-SA-00313 >

Mitigation measures

Regarding all the above vulnerabilities, any of the affected products requires updating its system BIOS and applying patches to its current operating system.

Top of this page