CVE-2020-12291: Medium severity intel jhl6240 thunderbolt 3 vulnerability
Uncontrolled resource consumption in some Intel(R) Thunderbolt(TM) controllers may allow an authenticated user to potentially enable denial of service via local access.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-12291?
CVE-2020-12291 is a vulnerability that allows an authenticated user to potentially enable denial of service via local access in some Intel Thunderbolt controllers.
What is the severity of CVE-2020-12291?
CVE-2020-12291 has a severity rating of 5.5, which is considered medium.
Which software is affected by CVE-2020-12291?
The affected software includes Intel Jhl6240 Thunderbolt 3 Firmware (up to version 21), Intel Jhl6340 Thunderbolt 3 Firmware (up to version 46), Intel Jhl6540 Thunderbolt 3 Firmware (up to version 46), Intel Jhl7040 Thunderbolt 3 Retimer Firmware (up to version 22), Intel Jhl7340 Thunderbolt 3 Firmware (up to version 60), Intel Jhl7440 Thunderbolt 3 Firmware (up to version 60), Intel Jhl7540 Thunderbolt 3 Firmware (up to version 60), Intel Jhl8010r Usb Retimer Firmware (up to version 41), Intel Dsl5320 Thunderbolt 2 Firmware, Intel Dsl5520 Thunderbolt 2 Firmware, Intel Dsl6340 Thunderbolt 3 Firmware, Intel Dsl6540 Thunderbolt 3 Firmware, and Intel Jhl8040r Thunderbolt 4 Retimer Firmware (up to version 41).
How can an authenticated user exploit CVE-2020-12291?
An authenticated user can potentially enable denial of service through local access to exploit CVE-2020-12291.
Where can I find more information about CVE-2020-12291?
You can find more information about CVE-2020-12291 at the following link: [Intel Security Center Advisory](https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00401.html).