CVE-2020-12288: Medium severity intel jhl6240 thunderbolt 3 vulnerability
Protection mechanism failure in some Intel(R) Thunderbolt(TM) controllers may allow an authenticated user to potentially enable denial of service via local access.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-12288?
CVE-2020-12288 is a vulnerability that refers to a protection mechanism failure in some Intel(R) Thunderbolt(TM) controllers, allowing an authenticated user to potentially enable denial of service via local access.
How severe is CVE-2020-12288?
CVE-2020-12288 has a severity score of 5.5 out of 10, indicating a medium severity.
Which versions of Intel Thunderbolt firmware are affected by CVE-2020-12288?
CVE-2020-12288 affects Intel Jhl6240 Thunderbolt 3 Firmware up to version 21, Intel Jhl6340 Thunderbolt 3 Firmware up to version 46, Intel Jhl6540 Thunderbolt 3 Firmware up to version 46, Intel Jhl7040 Thunderbolt 3 Retimer Firmware up to version 22, Intel Jhl7340 Thunderbolt 3 Firmware up to version 60, Intel Jhl7440 Thunderbolt 3 Firmware up to version 60, Intel Jhl7540 Thunderbolt 3 Firmware up to version 60, Intel Jhl8010r Usb Retimer Firmware up to version 41, Intel Dsl5320 Thunderbolt 2 Firmware, Intel Dsl5520 Thunderbolt 2 Firmware, Intel Dsl6340 Thunderbolt 3 Firmware, Intel Dsl6540 Thunderbolt 3 Firmware, and Intel Jhl8040r Thunderbolt 4 Retimer Firmware up to version 41.
How can an authenticated user exploit CVE-2020-12288?
An authenticated user can potentially enable denial of service via local access due to the protection mechanism failure in the affected Intel Thunderbolt controllers.
Where can I find more information about CVE-2020-12288?
You can find more information about CVE-2020-12288 at the following link: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00401.html