First published: Thu Nov 12 2020(Updated: )
Out-of-bounds read in subsystem in Intel(R) AMT versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow a privileged user to potentially enable information disclosure via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Active Management Technology Firmware | <11.8.80 | |
Intel Active Management Technology Firmware | >=11.12.0<11.12.80 | |
Intel Active Management Technology Firmware | >=11.22.0<11.22.80 | |
Intel Active Management Technology Firmware | >=12.0<12.0.70 | |
Intel Active Management Technology Firmware | >=14.0<14.0.45 | |
Netapp Cloud Backup |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-12356 is an out-of-bounds read vulnerability in the subsystem of Intel(R) AMT versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, and 14.0.45.
The severity of CVE-2020-12356 is medium with a CVSS score of 4.4.
A privileged user can potentially enable information disclosure through local access.
Intel AMT versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, and 14.0.45 are affected by CVE-2020-12356.
You can find more information about CVE-2020-12356 on the Netapp and Intel security advisories.