First published: Tue Nov 14 2023(Updated: )
Insufficient control flow management in firmware for some Intel(R) Optane(TM) SSD products may allow a privileged user to potentially enable denial of service via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Intel Optane Memory H20 With Solid State Storage Firmware | <u4110553-g004 | |
Intel Optane Memory H20 With Solid State Storage | ||
All of | ||
Intel Optane Ssd 900p Firmware | <e2010650 | |
Intel Optane Ssd 900p | ||
All of | ||
Intel Optane Ssd Dc P4800x Firmware | <e2010650 | |
Intel Optane Ssd Dc P4800x | ||
All of | ||
Intel Optane Ssd Dc P4801x Firmware | <e2010650 | |
Intel Optane Ssd Dc P4801x | ||
All of | ||
Intel Optane Ssd 905p Firmware | <e2010650 | |
Intel Optane Ssd 905p |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-24587 is a vulnerability that affects some Intel Optane SSD products due to insufficient control flow management in the firmware, allowing a privileged user to potentially enable denial of service via local access.
The following Intel Optane SSD products are affected by CVE-2023-24587: Intel Optane Memory H20 With Solid State Storage Firmware, Intel Optane SSD 900p Firmware, Intel Optane SSD DC P4800x Firmware, and Intel Optane SSD 905p Firmware.
The severity of CVE-2023-24587 is medium with a severity value of 6.9.
A privileged user can potentially enable denial of service via local access by exploiting the insufficient control flow management in the firmware of affected Intel Optane SSD products.
You can find more information about CVE-2023-24587 on the Intel Security Center Advisory page: [Intel Security Center Advisory](https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00758.html)