First published: Wed Jun 09 2021(Updated: )
Out of bound read in a subsystem in the Intel(R) CSME versions before 12.0.81, 13.0.47, 13.30.17, 14.1.53 and 14.5.32 may allow a privileged user to potentially enable information disclosure via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Converged Security and Manageability Engine | <12.0.81 | |
Intel b360 | ||
Intel b365 | ||
Intel c242 | ||
Intel c246 | ||
Intel Celeron 4205u | ||
Intel Celeron 4305u | ||
Intel Celeron 4305ue | ||
Intel Core i3-8100 | ||
Intel core i3-8100b | ||
Intel Core i3-8100H | ||
Intel Core i3-8100T Firmware | ||
Intel Core i3-8109u | ||
Intel Core i3-8121U Firmware | ||
Intel core i3-8130u | ||
Intel core i3-8140u | ||
Intel Core i3-8145u | ||
Intel core i3-8145ue | ||
Intel Core i3-8300 | ||
Intel Core i3-8300t | ||
Intel Core i3-8350K | ||
Intel Core i5-8200y | ||
Intel core i5-8210y | ||
Intel Core i5-8250u | ||
Intel Core i5-8257U Firmware | ||
Intel Core i5-8259U Firmware | ||
Intel core i5-8260u | ||
Intel Core i5-8265U Firmware | ||
Intel Core i5-8269U | ||
Intel core i5-8279u | ||
Intel Core i5-8300H | ||
Intel Core i5-8305g | ||
Intel core i5-8310y | ||
Intel Core i5-8350u | ||
Intel Core i5-8365UE Firmware | ||
Intel core i5-8365ue | ||
Intel Core i5-8400 | ||
Intel Core i5-8400B | ||
Intel Core i5-8400H | ||
Intel Core i5-8400T firmware | ||
Intel Core i5-8500 | ||
Intel Core i5-8500b | ||
Intel Core i5-8500T | ||
Intel Core i5-8600 | ||
Intel Core i5-8600K Firmware | ||
Intel Core i5-8600T Firmware | ||
Intel Core i7-8086K Firmware | ||
Intel Core i7-8500y | ||
Intel Core i7-8550u | ||
Intel core i7-8557u | ||
Intel Core i7-8559u | ||
Intel Core i7-8565u | ||
Intel Core i7-8569U Firmware | ||
Intel Core i7-8650u | ||
Intel Core i7-8665u | ||
Intel core i7-8665ue | ||
Intel Core i7-8700 | ||
Intel Core i7-8700 Firmware | ||
Intel Core i7-8700K | ||
Intel Core i7-8700T Firmware | ||
Intel Core i7-8705g | ||
Intel Core i7-8706g firmware | ||
Intel Core i7-8709g | ||
Intel Core i7-8750h | ||
Intel Core i7-8809g | ||
Intel Core i7-8850h | ||
Intel core i9-8950hk | ||
Intel h310 | ||
Intel h370 | ||
Intel mobile cm246 | ||
Intel Pentium Gold 4410y | ||
Intel Pentium 4415U | ||
Intel Core 4415Y | ||
Intel pentium gold 4417u | ||
Intel pentium gold 4425y | ||
Intel pentium gold 5405u | ||
Intel pentium gold 6405u | ||
Intel pentium gold 6500y | ||
Intel pentium gold 7505 | ||
Intel Pentium G5400 | ||
Intel Pentium Gold G5400T | ||
Intel Pentium G5420 | ||
Intel Pentium G5420T | ||
Intel Pentium G5500 | ||
Intel Pentium Gold G5500T | ||
Intel Pentium G5600 | ||
Intel pentium gold g5600t | ||
Intel pentium gold g5620 | ||
Intel pentium gold g6400 | ||
Intel pentium gold g6400e | ||
Intel pentium gold g6400t | ||
Intel pentium gold g6400te | ||
Intel pentium gold g6405 | ||
Intel pentium gold g6405t | ||
Intel pentium gold g6500 | ||
Intel pentium gold g6500t | ||
Intel pentium gold g6505 | ||
Intel pentium gold g6505t | ||
Intel pentium gold g6600 | ||
Intel pentium gold g6605 | ||
Intel q370 | ||
Intel xeon w-10855m | ||
Intel xeon w-10885m | ||
Intel Xeon W-11855M | ||
Intel Xeon W-11955M | ||
Intel xeon w-1250 | ||
Intel xeon w-1250e | ||
Intel xeon w-1250p | ||
Intel xeon w-1250te | ||
Intel xeon w-1270 | ||
Intel xeon w-1270e | ||
Intel xeon w-1270p | ||
Intel xeon w-1270te | ||
Intel xeon w-1290 | ||
Intel xeon w-1290e | ||
Intel xeon w-1290p | ||
Intel xeon w-1290t | ||
Intel xeon w-1290te | ||
Intel z370 | ||
Intel z390 | ||
Intel Converged Security and Manageability Engine | <13.0.47 | |
Intel core i3-1000g1 | ||
Intel core i3-1000g4 | ||
Intel core i3-1000ng4 | ||
Intel Core i3-1005g1 | ||
Intel core i3-10100 | ||
Intel core i3-10100e | ||
Intel core i3-10100f | ||
Intel core i3-10100t | ||
Intel core i3-10100te | ||
Intel core i3-10100y | ||
Intel core i3-10105 | ||
Intel core i3-10105f | ||
Intel core i3-10105t | ||
Intel Core i3-10110u | ||
Intel Core i3-10110y | ||
Intel core i3-10300 | ||
Intel core i3-10300t | ||
Intel core i3-10305 | ||
Intel core i3-10305t | ||
Intel core i3-10320 | ||
Intel core i3-10325 | ||
Intel core i5-10200h | ||
Intel Core i5-10210u | ||
Intel Core i5-10210y | ||
Intel core i5-10300h | ||
Intel core i5-1030g4 | ||
Intel Core i5-1030NG7 Firmware | ||
Intel core i5-1030ng7 | ||
Intel core i5-10310u | ||
Intel Core i5-10310y | ||
Intel Core i5-1035g1 | ||
Intel Core i5-1035g4 | ||
Intel Core i5-1035g7 | ||
Intel core i5-1038ng7 | ||
Intel core i5-10400 | ||
Intel core i5-10400f | ||
Intel core i5-10400h | ||
Intel core i5-10400t | ||
Intel core i5-10500 | ||
Intel core i5-10500e | ||
Intel core i5-10500h | ||
Intel Core I5-10500t | ||
Intel core i5-10500te | ||
Intel core i5-10505 | ||
Intel core i5-10600 | ||
Intel core i5-10600k | ||
Intel core i5-10600kf | ||
Intel core i5-10600t | ||
Intel core i7-10510u | ||
Intel core i7-10510y | ||
Intel Core i7 1060g7 | ||
Intel Core i7-1060NG7 Firmware | ||
Intel core i7-10610u | ||
Intel Core i7-1065g7 | ||
Intel Core i7-1068NG7 Firmware | ||
Intel core i7-10700 | ||
Intel core i7-10700e | ||
Intel core i7-10700f | ||
Intel core i7-10700k | ||
Intel core i7-10700kf | ||
Intel core i7-10700t | ||
Intel core i7-10700te | ||
Intel Core i7-10710u | ||
Intel core i7-10750h | ||
Intel core i7-10810u | ||
Intel core i7-10850h | ||
Intel core i7-10870h | ||
Intel core i7-10875h | ||
Intel core i9-10850k | ||
Intel core i9-10885h | ||
Intel core i9-10900 | ||
Intel core i9-10900e | ||
Intel core i9-10900f | ||
Intel core i9-10900k | ||
Intel core i9-10900kf | ||
Intel core i9-10900t | ||
Intel core i9-10900te | ||
Intel Core i9-10910 Firmware | ||
Intel core i9-10980hk | ||
Intel Converged Security and Manageability Engine | <13.30.17 | |
Intel core i3 l13g4 | ||
Intel core i5 l16g7 | ||
Intel Converged Security and Manageability Engine | <14.1.53 | |
Intel b460 | ||
Intel h410 | ||
Intel h420e | ||
Intel h470 | ||
Intel q470 | ||
Intel q470e | ||
Intel w480 | ||
Intel w480e | ||
Intel z490 | ||
Intel Converged Security and Manageability Engine | <14.5.32 | |
siemens simatic field pg m6 firmware | ||
siemens simatic field pg m6 | ||
siemens simatic ipc627e firmware | <25.02.10 | |
siemens simatic ipc627e | ||
siemens simatic ipc647e firmware | <25.02.10 | |
siemens simatic ipc647e | ||
siemens simatic ipc677e firmware | <25.02.10 | |
siemens simatic ipc677e | ||
siemens simatic ipc847e firmware | <25.02.10 | |
siemens simatic ipc847e |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2020-24506 is considered high due to potential information disclosure through out-of-bounds reads.
To fix CVE-2020-24506, users should update to Intel Converged Security and Manageability Engine versions 12.0.81, 13.0.47, 13.30.17, 14.1.53, or 14.5.32.
CVE-2020-24506 affects various Intel systems running vulnerable versions of the Converged Security and Manageability Engine.
Yes, exploitation of CVE-2020-24506 requires local access to the vulnerable system.
The impact of CVE-2020-24506 is potential information disclosure, which could expose sensitive data to privileged users.