CVE-2020-0551

MEDIUMCVSS 5.6/10EPSS 1.04%

Last modified

CVE-2020-0551 is a medium-severity vulnerability rated 5.6/10 on the CVSS scale. Load value injection in some Intel(R) Processors utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access. The list of affected products is provided in intel-sa-00334: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00334.html. EPSS estimates a 1.04% chance of exploitation in the next 30 days.

Description

Load value injection in some Intel(R) Processors utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access. The list of affected products is provided in intel-sa-00334: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00334.html

Metrics

CVSS 3.1
5.6/10

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N

EPSS Probability
1.04%

59.6th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

VendorProductVersions
IntelAtom C2308All versions
IntelAtom C2316All versions
IntelAtom C2338All versions
IntelAtom C2350All versions
IntelAtom C2358All versions
IntelAtom C2508All versions
IntelAtom C2516All versions
IntelAtom C2518All versions
IntelAtom C2530All versions
IntelAtom C2538All versions
IntelAtom C2550All versions
IntelAtom C2558All versions
IntelAtom C2718All versions
IntelAtom C2730All versions
IntelAtom C2738All versions
IntelAtom C2750All versions
IntelAtom C2758All versions
IntelAtom E3805All versions
IntelAtom E3815All versions
IntelAtom E3825All versions
IntelAtom E3826All versions
IntelAtom E3827All versions
IntelAtom E3845All versions
IntelAtom X5-Z8300All versions
IntelAtom X5-Z8330All versions
IntelAtom X5-Z8350All versions
IntelAtom X5-Z8500All versions
IntelAtom X5-Z8550All versions
IntelAtom X7-Z8700All versions
IntelAtom X7-Z8750All versions
IntelAtom Z3680All versions
IntelAtom Z3735dAll versions
IntelAtom Z3735eAll versions
IntelAtom Z3735fAll versions
IntelAtom Z3735gAll versions
IntelAtom Z3736fAll versions
IntelAtom Z3736gAll versions
IntelAtom Z3740All versions
IntelAtom Z3740dAll versions
IntelAtom Z3745All versions
IntelAtom Z3745dAll versions
IntelAtom Z3770All versions
IntelAtom Z3770dAll versions
IntelAtom Z3775All versions
IntelAtom Z3775dAll versions
IntelAtom Z3785All versions
IntelAtom Z3795All versions
IntelCeleron 1000mAll versions
IntelCeleron 1005mAll versions
IntelCeleron 1007uAll versions

Showing 50 of 1321 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2020-0551?
Load value injection in some Intel(R) Processors utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access. The list of affected products is provided in intel-sa-00334: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00334.html
How severe is CVE-2020-0551?
CVE-2020-0551 has a CVSS score of 5.6/10 (MEDIUM severity). The EPSS model estimates a 1.04% probability of exploitation in the next 30 days.
How do I fix CVE-2020-0551?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2020-0551?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST