First published: Wed Feb 17 2021(Updated: )
Out of bounds read in the BMC firmware for some Intel(R) Server Boards, Server Systems and Compute Modules before version 2.47 may allow an authenticated user to potentially enable escalation of privilege via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Bmc Firmware | <2.47 | |
Intel Hns2600bpb | ||
Intel Hns2600bpb24 | ||
Intel Hns2600bpblc | ||
Intel Hns2600bpblc24 | ||
Intel Hns2600bpq | ||
Intel Hns2600bpq24 | ||
Intel Hns2600bps | ||
Intel Hns2600bps24 | ||
Intel R1208wfqysr | ||
Intel R1208wftys | ||
Intel R1208wftysr | ||
Intel R1304wf0ys | ||
Intel R1304wf0ysr | ||
Intel R1304wftys | ||
Intel R1304wftysr | ||
Intel R2208wf0zs | ||
Intel R2208wf0zsr | ||
Intel R2208wfqzs | ||
Intel R2208wfqzsr | ||
Intel R2208wftzs | ||
Intel R2208wftzsr | ||
Intel R2224wfqzs | ||
Intel R2224wftzs | ||
Intel R2224wftzsr | ||
Intel R2308wftzs | ||
Intel R2308wftzsr | ||
Intel R2312wf0np | ||
Intel R2312wf0npr | ||
Intel R2312wfqzs | ||
Intel R2312wftzs | ||
Intel R2312wftzsr | ||
Intel S2600stb | ||
Intel S2600stq | ||
Intel S2600wf0 | ||
Intel S2600wfq | ||
Intel S2600wft |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-12380 is a vulnerability in the BMC firmware for some Intel(R) Server Boards, Server Systems, and Compute Modules.
The severity of CVE-2020-12380 is rated as high with a severity value of 7.8.
CVE-2020-12380 may allow an authenticated user to potentially enable escalation of privilege via local access on affected Intel systems.
BMC firmware versions before 2.47 are affected by CVE-2020-12380.
To fix CVE-2020-12380, update the BMC firmware to version 2.47 or later.