CVE-2020-24489: High severity intel atom x5-e3930 firmware vulnerability
A flaw was found in Intel® VT-d products. Entries from the context cache on some types of context cache invalidations may not be properly invalidated which may allow an authenticated user to potentially enable escalation of privilege via local access. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Other sources
Incomplete cleanup in some Intel(R) VT-d products may allow an authenticated user to potentially enable escalation of privilege via local access.
Intel® VT-d products may not properly invalidate all affected entries from the context cache on some types of context cache invalidations, which may allow an authenticated user to potentially enable escalation of privilege via local access.
— Red Hat
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Frequently Asked Questions
What is the severity of CVE-2020-24489?
CVE-2020-24489 is rated as high severity due to its potential for escalation of privileges.
How do I fix CVE-2020-24489?
To mitigate CVE-2020-24489, users should update to the fixed versions of affected Intel VT-d products or apply vendor-specific patches.
Who is affected by CVE-2020-24489?
CVE-2020-24489 affects systems utilizing certain Intel VT-d products with incomplete cleanup processes.
What types of systems are vulnerable to CVE-2020-24489?
Systems with specific Intel processors, including Atom, Celeron, Core, and Pentium families, are vulnerable to CVE-2020-24489.
How can I determine if my system is vulnerable to CVE-2020-24489?
You can check your system's architecture against Intel's advisories to identify if it is susceptible to CVE-2020-24489.