PT-2020-3999 · Intel · Intel Core Processor

Published

2020-06-09

·

Updated

2021-07-21

·

CVE-2020-0528

CVSS v2.0

5.5

Medium

VectorAV:L/AC:H/Au:S/C:N/I:C/A:C
Name of the Vulnerable Software and Affected Versions: Intel(R) Core(TM) Processor families versions 7th through 10th Generation
Description: The issue is related to improper buffer restrictions in BIOS firmware, which may allow an authenticated user to potentially enable escalation of privilege and/or denial of service via local access. This is caused by a buffer overflow in the microcode of Intel processors.
Recommendations: For 7th Generation Intel(R) Core(TM) Processor families: Update the BIOS firmware to the latest version. For 8th Generation Intel(R) Core(TM) Processor families: Update the BIOS firmware to the latest version. For 9th Generation Intel(R) Core(TM) Processor families: Update the BIOS firmware to the latest version. For 10th Generation Intel(R) Core(TM) Processor families: Update the BIOS firmware to the latest version. As a temporary workaround, consider restricting local access to minimize the risk of exploitation.

Fix

Buffer Overflow

Improper Initialization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-04392
BDU:2020-04393
CVE-2020-0528

Affected Products

Intel Core Processor