CVE-2019-11686

EUVD-2019-3356
Western Digital SanDisk X300, X300s, X400, and X600 devices: A vulnerability in the wear-leveling algorithm of the drive may cause cryptographically sensitive parameters (such as data encryption keys) to remain on the drive media after their intended erasure.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.5 MEDIUM
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 27%
Affected Products (NVD)
VendorProductVersion
westerndigitalsandisk_x300s_sd7sb3q-064g_firmware
-
westerndigitalsandisk_x300s_sd7sn3q-064g_firmware
-
westerndigitalsandisk_x300s_sd7ub2q-010t_firmware
-
westerndigitalsandisk_x300s_sd7ub2q-512g_firmware
-
westerndigitalsandisk_x300s_sd7ub3q-128g_firmware
-
westerndigitalsandisk_x300s_sd7ub3q-256g_firmware
-
westerndigitalsandisk_x300s_sd7un3q-128g_firmware
-
westerndigitalsandisk_x300s_sd7un3q-256g_firmware
-
westerndigitalsandisk_x300s_sd7un3q-512g_firmware
-
westerndigitalsandisk_x400_sd8sb8u-128g_firmware
-
westerndigitalsandisk_x400_sd8sb8u-128g-1122_firmware
-
westerndigitalsandisk_x400_sd8sb8u-1t00_firmware
-
westerndigitalsandisk_x400_sd8sb8u-1t00-1122_firmware
-
westerndigitalsandisk_x400_sd8sb8u-256g_firmware
-
westerndigitalsandisk_x400_sd8sb8u-256g-1122_firmware
-
westerndigitalsandisk_x400_sd8sb8u-512g_firmware
-
westerndigitalsandisk_x400_sd8sb8u-512g-1122_firmware
-
westerndigitalsandisk_x400_sd8sn8u-128g_firmware
-
westerndigitalsandisk_x400_sd8sn8u-128g-1122_firmware
-
westerndigitalsandisk_x400_sd8sn8u-1t00_firmware
-
westerndigitalsandisk_x400_sd8sn8u-1t00-1122_firmware
-
westerndigitalsandisk_x400_sd8sn8u-256g_firmware
-
westerndigitalsandisk_x400_sd8sn8u-256g-1122_firmware
-
westerndigitalsandisk_x400_sd8sn8u-512g_firmware
-
westerndigitalsandisk_x400_sd8sn8u-512g-1122_firmware
-
westerndigitalsandisk_x400_sd8tb8u-128g-1122_firmware
-
westerndigitalsandisk_x400_sd8tb8u-1t00-1122_firmware
-
westerndigitalsandisk_x400_sd8tb8u-256g-1122_firmware
-
westerndigitalsandisk_x400_sd8tb8u-512g-1122_firmware
-
westerndigitalsandisk_x300_sd7sb6s-128g_firmware
-
westerndigitalsandisk_x300_sd7sb6s-256g_firmware
-
westerndigitalsandisk_x300_sd7sb7s-010t_firmware
-
westerndigitalsandisk_x300_sd7sb7s-512g_firmware
-
westerndigitalsandisk_x300_sd7sf6s-128g_firmware
-
westerndigitalsandisk_x300_sd7sf6s-256g_firmware
-
westerndigitalsandisk_x300_sd7sf6s-512g_firmware
-
westerndigitalsandisk_x300_sd7sn6s-128g_firmware
-
westerndigitalsandisk_x300_sd7sn6s-256g_firmware
-
westerndigitalsandisk_x300_sd7sn6s-512g_firmware
-
𝑥
= Vulnerable software versions