CVE-2020-8690: Medium severity intel v710-at2 firmware vulnerability
Published Nov 12, 2020
·Updated
Protection mechanism failure in Intel(R) Ethernet 700 Series Controllers before version 7.3 may allow a privileged user to potentially enable escalation of privilege and/or denial of service via local access.
Affected Software
16 affected components
Intel V710-at2 Firmware<7.3
Intel V710-at2
Intel X710-tm4 Firmware<7.3
Intel X710-tm4
Intel X710-at2 Firmware<7.3
Intel X710-at2
Intel Xxv710-am2 Firmware<7.3
Intel Xxv710-am2
Intel Xxv710-am1 Firmware<7.3
Intel Xxv710-am1
Intel X710-bm2 Firmware<7.3
Intel X710-bm2
Intel Xl710-bm2 Firmware<7.3
Intel Xl710-bm2
Intel Xl710-bm1 Firmware<7.3
Intel Xl710-bm1
Event History
Nov 12, 2020
CVE Published
via MITRE·06:01 PM
Data Sourced
via MITRE·06:01 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2020-8690.
2
What is the title of the vulnerability?
The title of the vulnerability is 'Protection mechanism failure in Intel(R) Ethernet 700 Series Controllers before version 7.3 may allow privilege escalation and denial of service.'
3
What is the severity of CVE-2020-8690?
The severity of CVE-2020-8690 is medium with a CVSS score of 6.7.
4
What software versions are affected by CVE-2020-8690?
Intel Ethernet 700 Series Controllers with firmware versions up to but excluding 7.3 are affected by CVE-2020-8690.
5
How can the vulnerability in Intel Ethernet 700 Series Controllers be exploited?
A privileged user with local access may potentially enable escalation of privilege and/or denial of service.