First published: Thu Nov 12 2020(Updated: )
Out-of-bounds write in IPv6 subsystem for Intel(R) AMT, Intel(R) ISM versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 14.0.45 may allow an unauthenticated user to potentially enable escalation of privileges via network access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Active Management Technology Firmware | <11.8.80 | |
Intel Active Management Technology Firmware | >=11.12.0<11.12.80 | |
Intel Active Management Technology Firmware | >=11.22.0<11.22.80 | |
Intel Active Management Technology Firmware | >=12.0<12.0.70 | |
Intel Active Management Technology Firmware | >=14.0<14.0.45 | |
Netapp Cloud Backup | ||
Intel Standard Manageability | <11.8.80 | |
Intel Standard Manageability | >=11.12.0<11.12.80 | |
Intel Standard Manageability | >=11.22.0<11.22.80 | |
Intel Standard Manageability | >=12.0<12.0.70 | |
Intel Standard Manageability | >=14.0<14.0.45 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-8752 is a vulnerability in the IPv6 subsystem for Intel AMT and ISM versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 14.0.45 which may allow an unauthenticated user to potentially enable escalation of privileges via network access.
CVE-2020-8752 has a severity level of 9.8 out of 10, making it critical.
The versions of Intel AMT and ISM firmware affected are: 11.8.80, 11.12.80, 11.22.80, 12.0.70, 14.0.45.
An unauthenticated user can potentially exploit CVE-2020-8752 by leveraging network access to enable escalation of privileges.
You can find more information about CVE-2020-8752 in the following references: [Security NetApp Advisory](https://security.netapp.com/advisory/ntap-20201113-0003/) and [Intel Security Advisory](https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00391).