CVE-2020-0529

HIGHCVSS 7.8/10EPSS 0.34%

Last modified

CVE-2020-0529 is a high-severity vulnerability rated 7.8/10 on the CVSS scale. Improper initialization in BIOS firmware for 8th, 9th and 10th Generation Intel(R) Core(TM) Processor families may allow an unauthenticated user to potentially enable escalation of privilege via local access.. EPSS estimates a 0.34% chance of exploitation in the next 30 days.

Description

Improper initialization in BIOS firmware for 8th, 9th and 10th Generation Intel(R) Core(TM) Processor families may allow an unauthenticated user to potentially enable escalation of privilege via local access.

Metrics

CVSS 3.1
7.8/10

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS Probability
0.34%

26.4th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
IntelCore I5-7600k FirmwareAll versions
IntelCore I5-7600t FirmwareAll versions
IntelCore I5-7600 FirmwareAll versions
IntelCore I5-7500 FirmwareAll versions
IntelCore I5-7500t FirmwareAll versions
IntelCore I5-7442eq FirmwareAll versions
IntelCore I5-7440hq FirmwareAll versions
IntelCore I5-7440eq FirmwareAll versions
IntelCore I5-7400t FirmwareAll versions
IntelCore I5-7400 FirmwareAll versions
IntelCore I5-7360u FirmwareAll versions
IntelCore I5-7300u FirmwareAll versions
IntelCore I5-7300hq FirmwareAll versions
IntelCore I5-7287u FirmwareAll versions
IntelCore I5-7267u FirmwareAll versions
IntelCore I5-7260u FirmwareAll versions
IntelCore I5-7200u FirmwareAll versions
IntelCore I5-7y54 FirmwareAll versions
IntelCore I5-7y57 FirmwareAll versions
IntelCore I7-7920hq FirmwareAll versions
IntelCore I7-7820hq FirmwareAll versions
IntelCore I7-7820hk FirmwareAll versions
IntelCore I7-7820eq FirmwareAll versions
IntelCore I7-7700hq FirmwareAll versions
IntelCore I7-7700 FirmwareAll versions
IntelCore I7-7700k FirmwareAll versions
IntelCore I7-7700t FirmwareAll versions
IntelCore I7-7660u FirmwareAll versions
IntelCore I7-7600u FirmwareAll versions
IntelCore I7-7567u FirmwareAll versions
IntelCore I7-7560u FirmwareAll versions
IntelCore I7-7500u FirmwareAll versions
IntelCore I7-7y75 FirmwareAll versions
IntelCore I7-8665ue FirmwareAll versions
IntelCore I7-8665u FirmwareAll versions
IntelCore I7-8557u FirmwareAll versions
IntelCore I7-8850h FirmwareAll versions
IntelCore I7-8809g FirmwareAll versions
IntelCore I7-8750h FirmwareAll versions
IntelCore I7-8709g FirmwareAll versions
IntelCore I7-8706g FirmwareAll versions
IntelCore I7-8705g FirmwareAll versions
IntelCore I7-8700t FirmwareAll versions
IntelCore I7-8700k FirmwareAll versions
IntelCore I7-8700b FirmwareAll versions
IntelCore I7-8700 FirmwareAll versions
IntelCore I7\+8700 FirmwareAll versions
IntelCore I7-8569u FirmwareAll versions
IntelCore I7-8650u FirmwareAll versions
IntelCore I7-8565u FirmwareAll versions

Showing 50 of 79 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2020-0529?
Improper initialization in BIOS firmware for 8th, 9th and 10th Generation Intel(R) Core(TM) Processor families may allow an unauthenticated user to potentially enable escalation of privilege via local access.
How severe is CVE-2020-0529?
CVE-2020-0529 has a CVSS score of 7.8/10 (HIGH severity). The EPSS model estimates a 0.34% probability of exploitation in the next 30 days.
How do I fix CVE-2020-0529?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2020-0529?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST