CVE-2020-8674

medium

Description

Out-of-bounds read in DHCPv6 subsystem in Intel(R) AMT and Intel(R)ISM versions before 11.8.77, 11.12.77, 11.22.77, 12.0.64 and 14.0.33 may allow an unauthenticated user to potentially enable information disclosure via network access.

References

https://www.synology.com/security/advisory/Synology_SA_20_15

https://www.kb.cert.org/vuls/id/257161

https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00295.html

https://support.lenovo.com/de/en/product_security/len-30041

https://security.netapp.com/advisory/ntap-20200611-0007/

Details

Source: Mitre, NVD

Published: 2020-06-15

Updated: 2024-11-21

Risk Information

CVSS v2

Base Score: 5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:N/A:N

Severity: Medium

CVSS v3

Base Score: 5.3

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Severity: Medium