CVE-2020-24513Medium· 6.5▾ SunlitDomain-bypass transient execution vulnerability in some Intel Atom(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
▾ Sunlit zone — Low / medium · no exploitation signal
impact 35.8 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.5%
Domain-bypass transient execution vulnerability in some Intel Atom(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
atom_c3308atom_c3336atom_c3338atom_c3338ratom_c3436latom_c3508atom_c3538atom_c3558atom_c3558ratom_c3558rcatom_c3708atom_c3750atom_c3758atom_c3758ratom_c3808atom_c3830atom_c3850atom_c3858atom_c3950atom_c3955atom_c3958atom_p5942batom_x5-a3930atom_x5-a3940atom_x5-a3950atom_x5-a3960atom_x6200featom_x6211eatom_x6212reatom_x6413eatom_x6425eatom_x6425reatom_x6427feceleron_j3355celeron_j3355eceleron_j3455celeron_j3455eceleron_j4005celeron_j4025celeron_j4105celeron_j4125celeron_j6413celeron_n3350celeron_n3350eceleron_n3450celeron_n4000celeron_n4020celeron_n4100celeron_n4120celeron_n6211core_i3-l13g4core_i5-l16g7p5921bp5931bp5962bpentium_j4205pentium_j6425pentium_n4200pentium_n4200epentium_n6415pentium_silver_j5005pentium_silver_j5040pentium_silver_n5000pentium_silver_n5030debian_linux = 9.0debian_linux = 10.0simatic_drive_controller_firmwaresimatic_et_200sp_open_controller_firmware < 0209_0105simatic_ipc127e_firmware < 21.01.07Upgrade past the affected range:
simatic_et_200sp_open_controller_firmware 0209_0105simatic_ipc127e_firmware 21.01.07Connected by shared product, vendor, weakness, or advisory.
CVE-2020-24489High· 8.8Incomplete cleanup in some Intel(R) VT-d products may allow an authenticated user to potentially enable escalation of privilege via local access.
CVE-2020-24512Low· 3.3Observable timing discrepancy in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
CVE-2020-24511Medium· 6.5Improper isolation of shared resources in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
CVE-2021-0146Medium· 6.8Hardware allows activation of test or debug logic at runtime for some Intel(R) processors which may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
CVE-2021-0114Medium· 6.7Unchecked return value in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access.
CVE-2021-0095Medium· 4.4Improper initialization in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable a denial of service via local access.