Vulnerability Description
Buffer overflow in the bootloader for some Intel(R) Server Boards, Server Systems and Compute Modules before version 2.45 may allow a privileged user to potentially enable escalation of privilege via local access.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Intel | Server Board S2600Wt Firmware | < 2.45 |
| Intel | Server Board S2600Wt2 | - |
| Intel | Server Board S2600Wt2R | - |
| Intel | Server Board S2600Wtt | - |
| Intel | Server Board S2600Wttr | - |
| Intel | Server System R1000Wt Firmware | < 2.45 |
| Intel | Server System R1208Wt2Gs | - |
| Intel | Server System R1208Wt2Gsr | - |
| Intel | Server System R1208Wttgs | - |
| Intel | Server System R1208Wttgsbpp | - |
| Intel | Server System R1208Wttgsr | - |
| Intel | Server System R1304Wt2Gs | - |
| Intel | Server System R1304Wt2Gsr | - |
| Intel | Server System R1304Wttgs | - |
| Intel | Server System R1304Wttgsr | - |
| Intel | Server System R2000Wt Firmware | < 2.45 |
| Intel | Server System R2208Wt2Ys | - |
| Intel | Server System R2208Wt2Ysr | - |
| Intel | Server System R2208Wttyc1 | - |
| Intel | Server System R2208Wttyc1R | - |
Related Weaknesses (CWE)
References
- https://security.netapp.com/advisory/ntap-20200814-0002/Third Party Advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00384.Vendor Advisory
- https://security.netapp.com/advisory/ntap-20200814-0002/Third Party Advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00384.Vendor Advisory
FAQ
What is CVE-2020-8710?
CVE-2020-8710 is a vulnerability with a CVSS score of 6.7 (MEDIUM). Buffer overflow in the bootloader for some Intel(R) Server Boards, Server Systems and Compute Modules before version 2.45 may allow a privileged user to potentially enable escalation of privilege via ...
How severe is CVE-2020-8710?
CVE-2020-8710 has been rated MEDIUM with a CVSS base score of 6.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-8710?
Check the references section above for vendor advisories and patch information. Affected products include: Intel Server Board S2600Wt Firmware, Intel Server Board S2600Wt2, Intel Server Board S2600Wt2R, Intel Server Board S2600Wtt, Intel Server Board S2600Wttr.