CVE-2020-24513

MEDIUMCVSS 6.5/10EPSS 0.47%

Last modified

CVE-2020-24513 is a medium-severity vulnerability rated 6.5/10 on the CVSS scale. Domain-bypass transient execution vulnerability in some Intel Atom(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.. EPSS estimates a 0.47% chance of exploitation in the next 30 days.

Description

Domain-bypass transient execution vulnerability in some Intel Atom(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

Metrics

CVSS 3.1
6.5/10

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N

EPSS Probability
0.47%

37.2th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

VendorProductVersions
IntelAtom C3308All versions
IntelAtom C3336All versions
IntelAtom C3338All versions
IntelAtom C3338rAll versions
IntelAtom C3436lAll versions
IntelAtom C3508All versions
IntelAtom C3538All versions
IntelAtom C3558All versions
IntelAtom C3558rAll versions
IntelAtom C3558rcAll versions
IntelAtom C3708All versions
IntelAtom C3750All versions
IntelAtom C3758All versions
IntelAtom C3758rAll versions
IntelAtom C3808All versions
IntelAtom C3830All versions
IntelAtom C3850All versions
IntelAtom C3858All versions
IntelAtom C3950All versions
IntelAtom C3955All versions
IntelAtom C3958All versions
IntelAtom P5942bAll versions
IntelAtom X5-A3930All versions
IntelAtom X5-A3940All versions
IntelAtom X5-A3950All versions
IntelAtom X5-A3960All versions
IntelAtom X6200feAll versions
IntelAtom X6211eAll versions
IntelAtom X6212reAll versions
IntelAtom X6413eAll versions
IntelAtom X6425eAll versions
IntelAtom X6425reAll versions
IntelAtom X6427feAll versions
IntelCeleron J3355All versions
IntelCeleron J3355eAll versions
IntelCeleron J3455All versions
IntelCeleron J3455eAll versions
IntelCeleron J4005All versions
IntelCeleron J4025All versions
IntelCeleron J4105All versions
IntelCeleron J4125All versions
IntelCeleron J6413All versions
IntelCeleron N3350All versions
IntelCeleron N3350eAll versions
IntelCeleron N3450All versions
IntelCeleron N4000All versions
IntelCeleron N4020All versions
IntelCeleron N4100All versions
IntelCeleron N4120All versions
IntelCeleron N6211All versions

Showing 50 of 69 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2020-24513?
Domain-bypass transient execution vulnerability in some Intel Atom(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
How severe is CVE-2020-24513?
CVE-2020-24513 has a CVSS score of 6.5/10 (MEDIUM severity). The EPSS model estimates a 0.47% probability of exploitation in the next 30 days.
How do I fix CVE-2020-24513?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2020-24513?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST