CVE-2020-12303
12.11.2020, 18:15
Use after free in DAL subsystem for Intel(R) CSME versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 13.0.40, 13.30.10, 14.0.45 and 14.5.25, Intel(R) TXE 3.1.80, 4.0.30 may allow an authenticated user to potentially enable escalation of privileges via local access.Enginsight
| Vendor | Product | Version |
|---|---|---|
| intel | converged_security_and_manageability_engine | 𝑥 < 11.8.80 |
| intel | converged_security_and_manageability_engine | 11.12.0 ≤ 𝑥 < 11.12.80 |
| intel | converged_security_and_manageability_engine | 11.22.0 ≤ 𝑥 < 11.22.80 |
| intel | converged_security_and_manageability_engine | 12.0 ≤ 𝑥 < 12.0.70 |
| intel | converged_security_and_manageability_engine | 14.0 ≤ 𝑥 < 14.0.45 |
| intel | converged_security_and_manageability_engine | 14.5.0 ≤ 𝑥 < 14.5.25 |
| intel | trusted_execution_technology | 3.1.80 |
| intel | trusted_execution_technology | 4.0.30 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References