MEDIUM · 5.5

CVE-2020-8671

Insufficient control flow management in BIOS firmware 8th, 9th Generation Intel(R) Core(TM) Processors and Intel(R) Celeron(R) Processor 4000 Series may allow an authenticated user to potentially enab...

Vulnerability Description

Insufficient control flow management in BIOS firmware 8th, 9th Generation Intel(R) Core(TM) Processors and Intel(R) Celeron(R) Processor 4000 Series may allow an authenticated user to potentially enable information disclosure via local access.

CVSS Score

5.5

MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
IntelBios-
IntelCeleron 4205U-
IntelCeleron 4305U-
IntelCeleron 4305Ue-
IntelCore I3 8100-
IntelCore I3 8100F-
IntelCore I3 8100T-
IntelCore I3 8300-
IntelCore I3 8300T-
IntelCore I3 8350K-
IntelCore I3 9100-
IntelCore I3 9100F-
IntelCore I3 9100T-
IntelCore I3 9300-
IntelCore I3 9300T-
IntelCore I3 9320-
IntelCore I3 9350K-
IntelCore I3 9350Kf-
IntelCore I5 8400-
IntelCore I5 8400T-

References

FAQ

What is CVE-2020-8671?

CVE-2020-8671 is a vulnerability with a CVSS score of 5.5 (MEDIUM). Insufficient control flow management in BIOS firmware 8th, 9th Generation Intel(R) Core(TM) Processors and Intel(R) Celeron(R) Processor 4000 Series may allow an authenticated user to potentially enab...

How severe is CVE-2020-8671?

CVE-2020-8671 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2020-8671?

Check the references section above for vendor advisories and patch information. Affected products include: Intel Bios, Intel Celeron 4205U, Intel Celeron 4305U, Intel Celeron 4305Ue, Intel Core I3 8100.