CVE-2020-12376: Medium severity intel bmc firmware vulnerability
Use of hard-coded key in the BMC firmware for some Intel(R) Server Boards, Server Systems and Compute Modules before version 2.47 may allow authenticated user to potentially enable information disclosure via local access.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2020-12376?
CVE-2020-12376 is a vulnerability that involves the use of a hard-coded key in the BMC firmware for some Intel Server Boards, Server Systems, and Compute Modules.
What is the severity of CVE-2020-12376?
CVE-2020-12376 has a severity rating of 5.5 (medium).
How does CVE-2020-12376 impact Intel products?
CVE-2020-12376 may allow an authenticated user to potentially enable information disclosure via local access to some Intel Server Boards, Server Systems, and Compute Modules.
How can I fix CVE-2020-12376?
To fix CVE-2020-12376, you need to update the BMC firmware to version 2.47 or higher.
Where can I find more information about CVE-2020-12376?
You can find more information about CVE-2020-12376 on the Intel Security Advisory page at the following link: [link](https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00434.html)