Out of Bounds Write Vulnerability in Intel Server Firmware
CVE-2020-24473

7.8HIGH

Key Information:

Vendor
Intel
Vendor
CVE Published:
9 June 2021

Summary

An out of bounds write vulnerability exists in the BMC firmware of certain Intel Server Boards, Server Systems, and Compute Modules prior to version 2.48.ce3e3bd2. This flaw potentially allows an authenticated user to escalate privileges via local access, posing risks in server environments. Administrators are advised to update their firmware to mitigate these security issues and protect system integrity.

Affected Version(s)

Intel(R) Server Boards, Server Systems and Compute Modules before version 2.48.ce3e3bd2

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.