Vulnerability Description
Improper isolation of shared resources in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Intel | Microcode | < 20210608 |
| Debian | Debian Linux | 10.0 |
| Netapp | Fas\/Aff Bios | - |
| Netapp | Hci Compute Node Bios | - |
| Netapp | Solidfire Bios | - |
Related Weaknesses (CWE)
References
- https://cert-portal.siemens.com/productcert/pdf/ssa-309571.pdfThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2021/07/msg00022.htmlThird Party Advisory
- https://security.netapp.com/advisory/ntap-20210611-0005/Third Party Advisory
- https://www.debian.org/security/2021/dsa-4934Third Party Advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00464.Vendor Advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-309571.pdfThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2021/07/msg00022.htmlThird Party Advisory
- https://security.netapp.com/advisory/ntap-20210611-0005/Third Party Advisory
- https://www.debian.org/security/2021/dsa-4934Third Party Advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00464.Vendor Advisory
FAQ
What is CVE-2020-24511?
CVE-2020-24511 is a vulnerability with a CVSS score of 6.5 (MEDIUM). Improper isolation of shared resources in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
How severe is CVE-2020-24511?
CVE-2020-24511 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-24511?
Check the references section above for vendor advisories and patch information. Affected products include: Intel Microcode, Debian Debian Linux, Netapp Fas\/Aff Bios, Netapp Hci Compute Node Bios, Netapp Solidfire Bios.