First published: Mon Jun 15 2020(Updated: )
Reversible one-way hash in Intel(R) CSME versions before 11.8.76, 11.12.77 and 11.22.77 may allow a privileged user to potentially enable escalation of privilege, denial of service or information disclosure via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Converged Security Management Engine Firmware | >=11.0<11.8.77 | |
Intel Converged Security Management Engine Firmware | >=11.10<11.12.77 | |
Intel Converged Security Management Engine Firmware | >=11.20<11.22.77 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-0533 is a vulnerability in Intel(R) CSME versions before 11.8.76, 11.12.77, and 11.22.77 that may allow a privileged user to enable escalation of privilege, denial of service, or information disclosure via local access.
Intel(R) CSME versions before 11.8.76, 11.12.77, and 11.22.77 are affected by CVE-2020-0533.
CVE-2020-0533 has a severity rating of medium (6.7).
A privileged user can potentially exploit CVE-2020-0533 to enable escalation of privilege, denial of service, or information disclosure via local access.
Yes, it is recommended to upgrade to Intel(R) CSME versions 11.8.76, 11.12.77, or 11.22.77 to mitigate the vulnerability.