CVE-2020-8674 — Out-of-bounds Read in Intel Active Management Technology Firmware
Severity
5.3MEDIUMNVD
EPSS
1.2%
top 20.66%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJun 15
Latest updateMay 24
Description
Out-of-bounds read in DHCPv6 subsystem in Intel(R) AMT and Intel(R)ISM versions before 11.8.77, 11.12.77, 11.22.77, 12.0.64 and 14.0.33 may allow an unauthenticated user to potentially enable information disclosure via network access.
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:NExploitability: 3.9 | Impact: 1.4
Affected Packages2 packages
🔴Vulnerability Details
2💬Community
1Bugzilla▶
CVE-2019-8674 webkitgtk: Incorrect state management leading to universal cross-site scripting↗2020-09-07