6.2

CVE-2020-0584

Buffer overflow in firmware for Intel(R) SSD DC P4800X and P4801X Series, Intel(R) Optane(TM) SSD 900P and 905P Series may allow an unauthenticated user to potentially enable a denial of service via local access.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Intel ≫ Ssd Dc P4800x Firmware Version < e2010485
   Intel ≫ Ssd Dc P4800x Version -
Intel ≫ Ssd Dc P4801x Firmware Version < e2010485
   Intel ≫ Ssd Dc P4801x Version -
Intel ≫ Optane Ssd 900p Firmware Version < e2010480
   Intel ≫ Optane Ssd 900p Version -
Intel ≫ Optane Ssd 905p Firmware Version < e2010480
   Intel ≫ Optane Ssd 905p Version -
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.32% 0.241
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 6.2 2.5 3.6
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
NIST 2.1 3.9 2.9
AV:L/AC:L/Au:N/C:N/I:N/A:P
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00362
Patch
Vendor Advisory