Vulnerability Description
Uncontrolled resource consumption in some Intel(R) Thunderbolt(TM) controllers may allow an authenticated user to potentially enable denial of service via local access.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Intel | Dsl5320 Thunderbolt 2 Firmware | All versions |
| Intel | Dsl5320 Thunderbolt 2 | - |
| Intel | Dsl5520 Thunderbolt 2 Firmware | All versions |
| Intel | Dsl5520 Thunderbolt 2 | - |
| Intel | Dsl6340 Thunderbolt 3 Firmware | All versions |
| Intel | Dsl6340 Thunderbolt 3 | - |
| Intel | Dsl6540 Thunderbolt 3 Firmware | All versions |
| Intel | Dsl6540 Thunderbolt 3 | - |
| Intel | Jhl6240 Thunderbolt 3 Firmware | < 21 |
| Intel | Jhl6240 Thunderbolt 3 | - |
| Intel | Jhl6340 Thunderbolt 3 Firmware | < 46 |
| Intel | Jhl6340 Thunderbolt 3 | - |
| Intel | Jhl6540 Thunderbolt 3 Firmware | < 46 |
| Intel | Jhl6540 Thunderbolt 3 | - |
| Intel | Jhl7040 Thunderbolt 3 Retimer Firmware | < 22 |
| Intel | Jhl7040 Thunderbolt 3 Retimer | - |
| Intel | Jhl7340 Thunderbolt 3 Firmware | < 60 |
| Intel | Jhl7340 Thunderbolt 3 | - |
| Intel | Jhl7440 Thunderbolt 3 Firmware | < 60 |
| Intel | Jhl7440 Thunderbolt 3 | - |
Related Weaknesses (CWE)
References
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00401.Vendor Advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00401.Vendor Advisory
FAQ
What is CVE-2020-12296?
CVE-2020-12296 is a vulnerability with a CVSS score of 5.5 (MEDIUM). Uncontrolled resource consumption in some Intel(R) Thunderbolt(TM) controllers may allow an authenticated user to potentially enable denial of service via local access.
How severe is CVE-2020-12296?
CVE-2020-12296 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-12296?
Check the references section above for vendor advisories and patch information. Affected products include: Intel Dsl5320 Thunderbolt 2 Firmware, Intel Dsl5320 Thunderbolt 2, Intel Dsl5520 Thunderbolt 2 Firmware, Intel Dsl5520 Thunderbolt 2, Intel Dsl6340 Thunderbolt 3 Firmware.