Improper Initialization Vulnerability in Intel Server Firmware
CVE-2020-24475

5.5MEDIUM

Key Information:

Vendor
Intel
Vendor
CVE Published:
9 June 2021

Summary

An improper initialization vulnerability exists in the BMC firmware of certain Intel Server Boards, Server Systems, and Compute Modules prior to version 2.48.ce3e3bd2. This flaw could allow an authenticated user with local access to exploit the vulnerability and potentially cause a denial of service. Users of affected systems are advised to update their firmware to mitigate any risks.

Affected Version(s)

Intel(R) Server Boards, Server Systems and Compute Modules before version 2.48.ce3e3bd2

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.