CVE-2020-12294: Medium severity intel jhl6240 thunderbolt 3 vulnerability
Insufficient control flow management in some Intel(R) Thunderbolt(TM) controllers may allow an authenticated user to potentially enable denial of service via local access.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-12294?
The severity of CVE-2020-12294 is medium with a severity value of 5.5.
How does CVE-2020-12294 impact Intel Thunderbolt controllers?
CVE-2020-12294 may allow an authenticated user to potentially enable denial of service via local access on some Intel Thunderbolt controllers.
Which Intel Thunderbolt controllers are affected by CVE-2020-12294?
The following Intel Thunderbolt controllers are affected by CVE-2020-12294: Intel Jhl6240 Thunderbolt 3 Firmware, Intel Jhl6340 Thunderbolt 3 Firmware, Intel Jhl6540 Thunderbolt 3 Firmware, Intel Jhl7040 Thunderbolt 3 Retimer Firmware, Intel Jhl7340 Thunderbolt 3 Firmware, Intel Jhl7440 Thunderbolt 3 Firmware, Intel Jhl7540 Thunderbolt 3 Firmware, Intel Jhl8010r Usb Retimer Firmware, Intel Dsl5320 Thunderbolt 2 Firmware, Intel Dsl5520 Thunderbolt 2 Firmware, Intel Dsl6340 Thunderbolt 3 Firmware, Intel Dsl6540 Thunderbolt 3 Firmware, Intel Jhl8040r Thunderbolt 4 Retimer Firmware.
How do I fix CVE-2020-12294?
To fix CVE-2020-12294, it is recommended to update to the latest firmware version provided by Intel.
Where can I find more information about CVE-2020-12294?
You can find more information about CVE-2020-12294 on the official Intel Security Center Advisory page: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00401.html