CVE-2020-24475: Medium severity intel baseboard management controller firmware vulnerability
Improper initialization in the BMC firmware for some Intel(R) Server Boards, Server Systems and Compute Modules before version 2.48.ce3e3bd2 may allow an authenticated user to potentially enable denial of service via local access.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-24475?
CVE-2020-24475 refers to an improper initialization vulnerability in the BMC firmware for certain Intel Server Boards, Server Systems, and Compute Modules.
What is the severity of CVE-2020-24475?
The severity of CVE-2020-24475 is medium with a CVSS score of 5.5.
How does CVE-2020-24475 affect Intel Server Boards, Server Systems, and Compute Modules?
CVE-2020-24475 may allow an authenticated user to potentially enable denial of service via local access.
How can I fix CVE-2020-24475?
To fix CVE-2020-24475, update the BMC firmware to version 2.48.ce3e3bd2 or later.
Where can I find more information about CVE-2020-24475?
You can find more information about CVE-2020-24475 on the Intel Security Center Advisory page: [link](https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00476.html)