HIGH · 8.8

CVE-2020-8732

Heap-based buffer overflow in the firmware for some Intel(R) Server Boards, Server Systems and Compute Modules before version 1.59 may allow an unauthenticated user to potentially enable escalation of...

Vulnerability Description

Heap-based buffer overflow in the firmware for some Intel(R) Server Boards, Server Systems and Compute Modules before version 1.59 may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.

CVSS Score

8.8

HIGH

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
ADJACENT_NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
IntelServer Board S2600Wt Firmware< 1.59
IntelServer Board S2600Wt2-
IntelServer Board S2600Wt2R-
IntelServer Board S2600Wtt-
IntelServer Board S2600Wttr-
IntelServer System R1000Wt Firmware< 1.59
IntelServer System R1208Wt2Gs-
IntelServer System R1208Wt2Gsr-
IntelServer System R1208Wttgs-
IntelServer System R1208Wttgsbpp-
IntelServer System R1208Wttgsr-
IntelServer System R1304Wt2Gs-
IntelServer System R1304Wt2Gsr-
IntelServer System R1304Wttgs-
IntelServer System R1304Wttgsr-
IntelServer System R2000Wt Firmware< 1.59
IntelServer System R2208Wt2Ys-
IntelServer System R2208Wt2Ysr-
IntelServer System R2208Wttyc1-
IntelServer System R2208Wttyc1R-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2020-8732?

CVE-2020-8732 is a vulnerability with a CVSS score of 8.8 (HIGH). Heap-based buffer overflow in the firmware for some Intel(R) Server Boards, Server Systems and Compute Modules before version 1.59 may allow an unauthenticated user to potentially enable escalation of...

How severe is CVE-2020-8732?

CVE-2020-8732 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2020-8732?

Check the references section above for vendor advisories and patch information. Affected products include: Intel Server Board S2600Wt Firmware, Intel Server Board S2600Wt2, Intel Server Board S2600Wt2R, Intel Server Board S2600Wtt, Intel Server Board S2600Wttr.