VulnerabilityModified
CVE-2020-0543
Incomplete cleanup from specific special register read operations in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
MEDIUM 5.5EPSS 0.54%
Does this matter?
Lower severity and a low EPSS score (0.54%). Track it; it rarely justifies an emergency change on its own.
Description
Incomplete cleanup from specific special register read operations in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
- EPSS
- 0.54% probability · 44th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-459
- Affected
- intel/celeron 1000m · intel/celeron 1005m · intel/celeron 1007u · intel/celeron 1017u · intel/celeron 1019y · intel/celeron 1020e · intel/celeron 1020m · intel/celeron 1037u · intel/celeron 1047ue · intel/celeron 2955u · intel/celeron 2957u · intel/celeron 2970m · intel/celeron 2980u · intel/celeron 2981u · intel/celeron 3755u · intel/celeron 3765u · intel/celeron 3855u · intel/celeron 3865u · intel/celeron 3955u · intel/celeron 3965u · +40 more
- Source
- secure@intel.com
References
- http://lists.opensuse.org/opensuse-security-announce/2020-06/msg00025.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2020-07/msg00024.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2020-07/msg00031.htmlMailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2020/07/14/5Mailing List, Third Party Advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-534763.pdfThird Party Advisory
- https://kc.mcafee.com/corporate/index?page=content&id=SB10318Third Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DT2VKDMQ3I37NBNJ256A2EXR7OJHXXKZ/
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GRFC7UAPKAFFH5WX3AMDUBVHLKYQA2NZ/
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NQZMOSHLTBBIECENNXA6M7DN5FEED4KI/
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/T5OUM24ZC43G4IDT3JUCIHJTSDXJSK6Y/
- https://usn.ubuntu.com/4385-1/Third Party Advisory
- https://usn.ubuntu.com/4387-1/Third Party Advisory
- https://usn.ubuntu.com/4388-1/Third Party Advisory
- https://usn.ubuntu.com/4389-1/Third Party Advisory
- https://usn.ubuntu.com/4390-1/Third Party Advisory
- https://usn.ubuntu.com/4391-1/Third Party Advisory
- https://usn.ubuntu.com/4392-1/Third Party Advisory
- https://usn.ubuntu.com/4393-1/Third Party Advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00320.htmlVendor Advisory
- http://lists.opensuse.org/opensuse-security-announce/2020-06/msg00025.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2020-07/msg00024.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2020-07/msg00031.htmlMailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2020/07/14/5Mailing List, Third Party Advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-534763.pdfThird Party Advisory
- https://kc.mcafee.com/corporate/index?page=content&id=SB10318Third Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DT2VKDMQ3I37NBNJ256A2EXR7OJHXXKZ/
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GRFC7UAPKAFFH5WX3AMDUBVHLKYQA2NZ/
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NQZMOSHLTBBIECENNXA6M7DN5FEED4KI/
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/T5OUM24ZC43G4IDT3JUCIHJTSDXJSK6Y/
- https://usn.ubuntu.com/4385-1/Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.