Out of Bounds Read Vulnerability in Intel Server Firmware
CVE-2020-12380
7.8HIGH
Key Information:
- Vendor
- Intel
- Vendor
- CVE Published:
- 17 February 2021
Summary
An out of bounds read vulnerability exists in the BMC firmware for certain Intel Server Boards, Server Systems, and Compute Modules prior to version 2.47. This security flaw may allow an authenticated user with local access to escalate privileges. The vulnerability could lead to unauthorized data exposure, potentially putting system integrity at risk. Users are advised to review the firmware versions and apply the necessary updates to mitigate this issue.
Affected Version(s)
Intel(R) Server Boards, Server Systems and Compute Modules before version 2.47
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved