CVE-2020-8674: Medium severity intel active management technology vulnerability
Out-of-bounds read in DHCPv6 subsystem in Intel(R) AMT and Intel(R)ISM versions before 11.8.77, 11.12.77, 11.22.77, 12.0.64 and 14.0.33 may allow an unauthenticated user to potentially enable information disclosure via network access.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2020-8674.
What is the severity of CVE-2020-8674?
The severity of CVE-2020-8674 is medium with a severity value of 5.3.
Which software versions are affected by CVE-2020-8674?
Intel Active Management Technology Firmware versions before 11.8.77, 11.12.77, 11.22.77, 12.0.64, and 14.0.33, as well as Intel Service Manager versions before 11.8.77, 11.12.77, 11.22.77, 12.0.64, and 14.0.33 are affected by CVE-2020-8674.
How can an unauthenticated user potentially exploit CVE-2020-8674?
An unauthenticated user may exploit CVE-2020-8674 to potentially enable information disclosure via network access.
Where can I find more information about CVE-2020-8674?
You can find more information about CVE-2020-8674 on the following references: https://security.netapp.com/advisory/ntap-20200611-0007/, https://support.lenovo.com/de/en/product_security/len-30041, https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00295.html