CVE-2020-8694
Insufficient access control in the Linux kernel driver for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
Description
Intel has published information on vulnerabilities in Intel products in November 2020. This advisory lists the Siemens IPC related products, that are affected by these vulnerabilities. In this advisory we take a representative CVE from each advisory: - “Intel CSME, SPS, TXE, AMT and DAL Advisory” Intel-SA-00391 is represented by CVE-2020-8745 - “Intel RAPL Interface Advisory” Intel-SA-00389 is represented by CVE-2020-8694 - “Intel Processor Advisory” Intel-SA-00381 is represented by CVE-2020-8698, and - “BIOS Advisory” Intel-SA-00358 is represented by CVE-2020-0590. Siemens has released updates for the affected products and recommends to update to the latest versions.
CVSS Vector Breakdown
AV:LAttack VectorAC:LAttack ComplexityPR:LPrivileges RequiredUI:NUser InteractionS:UScopeC:HConfidentialityI:NIntegrityA:NAvailabilityWeaknesses
Affected Products
Exploitability
References
Timeline
Unlock Complete Vulnerability Intelligence
Get the full picture for CVE-2020-8694 and every CVE in our database. Create a free account — no credit card required.
Create Free Account