CVE-2020-8744: High severity intel converged security and manageability engine vulnerability
Improper initialization in subsystem for Intel(R) CSME versions before12.0.70, 13.0.40, 13.30.10, 14.0.45 and 14.5.25, Intel(R) TXE versions before 4.0.30 Intel(R) SPS versions before E305.01.04.200 may allow a privileged user to potentially enable escalation of privilege via local access.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2020-8744?
CVE-2020-8744 is a vulnerability in Intel CSME, TXE, and SPS subsystems that allows a privileged user to potentially enable escalation of privilege via local access.
Which versions of Intel CSME are affected by CVE-2020-8744?
Versions before 12.0.70, 13.0.40, 13.30.10, 14.0.45, and 14.5.25 of Intel CSME are affected by CVE-2020-8744.
Which versions of Intel TXE are affected by CVE-2020-8744?
Versions before 4.0.30 of Intel TXE are affected by CVE-2020-8744.
Which versions of Intel SPS are affected by CVE-2020-8744?
Versions before E3_05.01.04.200 of Intel SPS are affected by CVE-2020-8744.
What is the severity of CVE-2020-8744?
CVE-2020-8744 has a severity rating of 7.8 (high).