CVE-2020-12293: Medium severity intel jhl6240 thunderbolt 3 vulnerability
Improper control of a resource through its lifetime in some Intel(R) Thunderbolt(TM) controllers may allow an authenticated user to potentially enable denial of service via local access.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-12293?
CVE-2020-12293 is a vulnerability that allows an authenticated user to potentially enable denial of service via local access in some Intel(R) Thunderbolt(TM) controllers.
What is the severity of CVE-2020-12293?
The severity of CVE-2020-12293 is medium with a severity value of 5.5.
Which software versions are affected by CVE-2020-12293?
Intel Jhl6240 Thunderbolt 3 Firmware versions up to 21, Intel Jhl6340 Thunderbolt 3 Firmware versions up to 46, Intel Jhl6540 Thunderbolt 3 Firmware versions up to 46, Intel Jhl7040 Thunderbolt 3 Retimer Firmware versions up to 22, Intel Jhl7340 Thunderbolt 3 Firmware versions up to 60, Intel Jhl7440 Thunderbolt 3 Firmware versions up to 60, Intel Jhl7540 Thunderbolt 3 Firmware versions up to 60, Intel Jhl8010r Usb Retimer Firmware versions up to 41, Intel Dsl5320 Thunderbolt 2 Firmware, Intel Dsl5520 Thunderbolt 2 Firmware, Intel Dsl6340 Thunderbolt 3 Firmware, Intel Dsl6540 Thunderbolt 3 Firmware, Intel Jhl8040r Thunderbolt 4 Retimer Firmware versions up to 41.
How can an authenticated user potentially enable denial of service through CVE-2020-12293?
An authenticated user can potentially enable denial of service through CVE-2020-12293 by exploiting the improper control of a resource in some Intel(R) Thunderbolt(TM) controllers via local access.
Where can I find more information about CVE-2020-12293?
You can find more information about CVE-2020-12293 on the Intel Security Center advisory page at https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00401.html.