CVE-2020-12290: Medium severity intel jhl6240 thunderbolt 3 vulnerability
Improper access control in some Intel(R) Thunderbolt(TM) controllers may allow an authenticated user to potentially enable denial of service via local access.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-12290?
CVE-2020-12290 is a vulnerability related to improper access control in some Intel Thunderbolt controllers that may allow an authenticated user to potentially enable denial of service via local access.
What is the severity of CVE-2020-12290?
The severity of CVE-2020-12290 is medium, with a severity value of 5.5.
Which software versions are affected by CVE-2020-12290?
CVE-2020-12290 affects Intel Jhl6240 Thunderbolt 3 Firmware (up to version 21), Intel Jhl6340 Thunderbolt 3 Firmware (up to version 46), Intel Jhl6540 Thunderbolt 3 Firmware (up to version 46), Intel Jhl7040 Thunderbolt 3 Retimer Firmware (up to version 22), Intel Jhl7340 Thunderbolt 3 Firmware (up to version 60), Intel Jhl7440 Thunderbolt 3 Firmware (up to version 60), Intel Jhl7540 Thunderbolt 3 Firmware (up to version 60), and Intel Jhl8010r Usb Retimer Firmware (up to version 41).
How can an authenticated user potentially enable denial of service via local access?
Details on how an authenticated user can potentially enable denial of service via local access are provided in the advisory linked to CVE-2020-12290.
Where can I find more information about CVE-2020-12290?
You can find more information about CVE-2020-12290 in the advisory provided by Intel.