PT-2020-4242 · Intel · Intel Ism+1
Published
2020-06-09
·
Updated
2021-03-18
·
CVE-2020-8674
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions:
Intel(R) AMT and Intel(R)ISM versions prior to 11.8.77
Intel(R) AMT and Intel(R)ISM versions prior to 11.12.77
Intel(R) AMT and Intel(R)ISM versions prior to 11.22.77
Intel(R) AMT and Intel(R)ISM versions prior to 12.0.64
Intel(R) AMT and Intel(R)ISM versions prior to 14.0.33
Description:
The issue is related to an out-of-bounds read in the DHCPv6 subsystem of Intel Active Management Technology and Standard Manageability implementations. This could allow a remote attacker to gain unauthorized access to protected information. The exploitation of this issue may enable information disclosure via network access.
Recommendations:
For Intel(R) AMT and Intel(R)ISM versions prior to 11.8.77, update to version 11.8.77 or later.
For Intel(R) AMT and Intel(R)ISM versions prior to 11.12.77, update to version 11.12.77 or later.
For Intel(R) AMT and Intel(R)ISM versions prior to 11.22.77, update to version 11.22.77 or later.
For Intel(R) AMT and Intel(R)ISM versions prior to 12.0.64, update to version 12.0.64 or later.
For Intel(R) AMT and Intel(R)ISM versions prior to 14.0.33, update to version 14.0.33 or later.
Fix
Out of bounds Read
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Intel Amt
Intel Ism