Buffer Overflow Vulnerability in Intel Server Boards and Systems
CVE-2020-24474

8HIGH

Key Information:

Vendor
Intel
Vendor
CVE Published:
9 June 2021

Summary

A buffer overflow vulnerability exists in the BMC firmware for certain Intel Server Boards, Server Systems, and Compute Modules prior to version 2.48.ce3e3bd2. An authenticated user with adjacent access could exploit this flaw to potentially escalate their privileges, thereby gaining unauthorized access to sensitive system functionalities. It's critical for users to apply the latest firmware updates to safeguard against this vulnerability.

Affected Version(s)

Intel(R) Server Boards, Server Systems and Compute Modules before version 2.48.ce3e3bd2

References

CVSS V3.1

Score:
8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.