CVE-2020-0545: Integer Overflow
Integer overflow in subsystem for Intel(R) CSME versions before 11.8.77, 11.12.77, 11.22.77 and Intel(R) TXE versions before 3.1.75, 4.0.25 and Intel(R) Server Platform Services (SPS) versions before SPSE504.01.04.380.0, SPSSoC-X04.00.04.128.0, SPSSoC-A04.00.04.211.0, SPSE304.01.04.109.0, SPSE304.08.04.070.0 may allow a privileged user to potentially enable denial of service via local access.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2020-0545.
What is the severity of CVE-2020-0545?
The severity of CVE-2020-0545 is medium with a severity score of 4.4.
Which software versions are affected by CVE-2020-0545?
Intel(R) CSME versions before 11.8.77, 11.12.77, 11.22.77, Intel(R) TXE versions before 3.1.75, 4.0.25, and Intel(R) Server Platform Services (SPS) versions before SPS_E5_04.01.04.380.0, SPS_SoC-X_04.00.04.128.0, SPS_SoC-A_04.00.04.211.0, SPS_E3_04.01.04.109.0 are affected by CVE-2020-0545.
How can I fix CVE-2020-0545?
Apply the latest security patch or update provided by Intel to fix CVE-2020-0545.
Where can I find more information about CVE-2020-0545?
More information about CVE-2020-0545 can be found at the following references: [Link 1](https://cert-portal.siemens.com/productcert/pdf/ssa-631949.pdf), [Link 2](https://kc.mcafee.com/corporate/index?page=content&id=SB10321), [Link 3](https://security.netapp.com/advisory/ntap-20200611-0006/).