Lucene search

K
nvd[email protected]NVD:CVE-2020-12310
HistoryNov 12, 2020 - 6:15 p.m.

CVE-2020-12310

2020-11-1218:15:13
web.nvd.nist.gov
6
intel
ssds
firmware
control flow
information disclosure

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:N/A:N

CVSS3

4.6

Attack Vector

PHYSICAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

AI Score

4.4

Confidence

High

EPSS

0.001

Percentile

30.6%

Insufficient control flow managementin firmware in some Intelยฎ Client SSDs and some Intelยฎ Data Center SSDs may allow an unauthenticated user to potentially enable information disclosure via physical access.

Affected configurations

Nvd
Node
intelssd_pro_6000p_firmwareRange<psf131p
AND
intelssd_pro_6000pMatch-
Node
intelssd_pro_5450s_firmwareRange<lhf005p
AND
intelssd_pro_5450sMatch-
Node
intelssd_e_5100s_firmwareRange<lhf004e
AND
intelssd_e_5100sMatch-
Node
intelssd_pro_5400s_firmwareRange<lbf017p
AND
intelssd_pro_5400sMatch-
Node
intelssd_pro_7600p_firmwareRange<005p
AND
intelssd_pro_7600pMatch-
Node
intelssd_760p_firmwareRange<005c
AND
intelssd_760pMatch-
Node
intelssd_e_6100p_firmwareRange<005e
AND
intelssd_e_6100pMatch-
Node
intelssd_660p_firmwareRange<004c
AND
intelssd_660pMatch-
Node
inteloptane_ssd_905p_firmwareRange<e2010480
AND
inteloptane_ssd_905pMatch-
Node
inteloptane_ssd_900p_firmwareRange<e2010480
AND
inteloptane_ssd_900pMatch-
Node
intelssd_dc_p4510_firmwareRange<vdv10170
AND
intelssd_dc_p4510Match-
Node
intelssd_dc_p4610_firmwareRange<vdv10170
AND
intelssd_dc_p4610Match-
Node
intelssd_dc_p4800x_firmwareRange<e2010485
AND
intelssd_dc_p4800xMatch-
Node
intelssd_dc_p4801x_firmwareRange<e2010485
AND
intelssd_dc_p4801xMatch-
Node
intelssd_dc_p4101_firmwareRange<008d
AND
intelssd_dc_p4101Match-
Node
intelssd_pro_5450s_firmwareRange<lhf0b3p
AND
intelssd_pro_5450sMatch-
Node
intelssd_e_5100s_firmwareRange<lhf0ae3
AND
intelssd_e_5100sMatch-
Node
intelssd_pro_5400s_firmwareRange<lsf043p
AND
intelssd_pro_5400sMatch-
VendorProductVersionCPE
intelssd_pro_6000p_firmware*cpe:2.3:o:intel:ssd_pro_6000p_firmware:*:*:*:*:*:*:*:*
intelssd_pro_6000p-cpe:2.3:h:intel:ssd_pro_6000p:-:*:*:*:*:*:*:*
intelssd_pro_5450s_firmware*cpe:2.3:o:intel:ssd_pro_5450s_firmware:*:*:*:*:*:*:*:*
intelssd_pro_5450s-cpe:2.3:h:intel:ssd_pro_5450s:-:*:*:*:*:*:*:*
intelssd_e_5100s_firmware*cpe:2.3:o:intel:ssd_e_5100s_firmware:*:*:*:*:*:*:*:*
intelssd_e_5100s-cpe:2.3:h:intel:ssd_e_5100s:-:*:*:*:*:*:*:*
intelssd_pro_5400s_firmware*cpe:2.3:o:intel:ssd_pro_5400s_firmware:*:*:*:*:*:*:*:*
intelssd_pro_5400s-cpe:2.3:h:intel:ssd_pro_5400s:-:*:*:*:*:*:*:*
intelssd_pro_7600p_firmware*cpe:2.3:o:intel:ssd_pro_7600p_firmware:*:*:*:*:*:*:*:*
intelssd_pro_7600p-cpe:2.3:h:intel:ssd_pro_7600p:-:*:*:*:*:*:*:*
Rows per page:
1-10 of 301

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:N/A:N

CVSS3

4.6

Attack Vector

PHYSICAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

AI Score

4.4

Confidence

High

EPSS

0.001

Percentile

30.6%

Related for NVD:CVE-2020-12310