cbcvebase.
CVE-2020-8745
published 2020-11-12

CVE-2020-8745: Insufficient control flow management in subsystem for Intel(R) CSME versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 13.0.40, 13.30.10, 14.0.45 and…

medium6.8CVSS 3.1
AVPACLPRNUINSUCHIHAH
Insufficient control flow management in subsystem for Intel(R) CSME versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 13.0.40, 13.30.10, 14.0.45 and 14.5.25 , Intel(R) TXE versions before 3.1.80 and 4.0.30 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.

Affected

25 ranges
VendorProductVersion rangeFixed in
intelconverged_security_and_manageability_engine< 11.8.8011.8.80
intelconverged_security_and_manageability_engine>= 11.12.0 < 11.12.8011.12.80
intelconverged_security_and_manageability_engine>= 11.22.0 < 11.22.8011.22.80
intelconverged_security_and_manageability_engine>= 12.0 < 12.0.7012.0.70
intelconverged_security_and_manageability_engine>= 14.0 < 14.0.4514.0.45
intelconverged_security_and_manageability_engine>= 14.5.0 < 14.5.2514.5.25
inteltrusted_execution_technology< 3.1.803.1.80
inteltrusted_execution_technology>= 4.0 < 4.0.304.0.30
siemenssimatic_drive_controller_firmware< 05.00.01.0005.00.01.00
siemenssimatic_et200sp_1515sp_pc2_firmware< 0209.01050209.0105
siemenssimatic_field_pg_m5_firmware< 22.01.0822.01.08
siemenssimatic_ipc127e_firmware< 27.01.0527.01.05
siemenssimatic_ipc427e_firmware< 27.01.0527.01.05
siemenssimatic_ipc477e_firmware< 21.01.1521.01.15
siemenssimatic_ipc527g_firmware< 1.4.01.4.0
siemenssimatic_ipc547g_firmware< r1.30.0r1.30.0
siemenssimatic_ipc627e_firmware< 25.02.0825.02.08
siemenssimatic_ipc647e_firmware< 25.02.0825.02.08
siemenssimatic_ipc667e_firmware< 25.02.0825.02.08
siemenssimatic_ipc847e_firmware< 25.02.0825.02.08
siemenssimatic_itp1000_firmware< 23.01.0823.01.08
siemenssinumerik_828d_hw_pu.4_firmware< 08.00.00.0008.00.00.00
siemenssinumerik_mc_mcu_1720_firmware< 05.00.00.0005.00.00.00
siemenssinumerik_one_ncu_1740_firmware< 04.00.00.0004.00.00.00
siemenssinumerik_one_ppu_1740_firmware< 06.00.00.0006.00.00.00