CVE-2020-8757: Medium severity intel active management technology vulnerability
Published Nov 12, 2020
·Updated
Out-of-bounds read in subsystem for Intel(R) AMT versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow a privileged user to potentially enable escalation of privilege via local access.
Affected Software
6 affected components
Intel Active Management Technology Firmware<11.8.80
Intel Active Management Technology Firmware>=11.12.0<11.12.80
Intel Active Management Technology Firmware>=11.22.0<11.22.80
Intel Active Management Technology Firmware>=12.0<12.0.70
Intel Active Management Technology Firmware>=14.0<14.0.45
NetApp Cloud Backup
Event History
Nov 12, 2020
CVE Published
via MITRE·06:07 PM
Data Sourced
via MITRE·06:07 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-8757?
CVE-2020-8757 has a high severity due to the potential for privilege escalation.
2
How do I fix CVE-2020-8757?
To fix CVE-2020-8757, update the Intel Active Management Technology Firmware to version 11.8.80 or later.
3
What software is affected by CVE-2020-8757?
CVE-2020-8757 affects Intel Active Management Technology Firmware versions earlier than 11.8.80, 11.12.80, 11.22.80, 12.0.70, and 14.0.45.
4
Who can exploit CVE-2020-8757?
CVE-2020-8757 can potentially be exploited by a privileged user with local access.
5
What type of vulnerability is CVE-2020-8757?
CVE-2020-8757 is classified as an out-of-bounds read vulnerability.