CVE-2020-8703: Buffer Overflow
Improper buffer restrictions in a subsystem in the Intel(R) CSME versions before 11.8.86, 11.12.86, 11.22.86, 12.0.81, 13.0.47, 13.30.17, 14.1.53, 14.5.32 and 15.0.22 may allow a privileged user to potentially enable escalation of privilege via local access.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-8703?
CVE-2020-8703 has a high severity score due to its potential to allow escalation of privileges for a privileged user through local access.
How do I fix CVE-2020-8703?
To fix CVE-2020-8703, update the affected Intel Converged Security and Manageability Engine to versions 11.8.86, 11.12.86, 11.22.86, 12.0.81, 13.0.47, 13.30.17, 14.1.53, 14.5.32, or 15.0.22.
What systems are affected by CVE-2020-8703?
CVE-2020-8703 affects various versions of the Intel Converged Security and Manageability Engine and may impact systems running specific models of Intel hardware.
Is it safe to use software affected by CVE-2020-8703 without a fix?
Using unpatched software affected by CVE-2020-8703 poses a security risk due to the potential for privilege escalation.
Can CVE-2020-8703 be exploited remotely?
CVE-2020-8703 is not known to be exploitable remotely, but requires local access to exploit the vulnerability.