7.8

CVE-2020-24462

Out of bounds write in the Intel(R) Graphics Driver before version 15.33.53.5161, 15.36.40.5162, 15.40.47.5166, 15.45.33.5164 and 27.20.100.8336 may allow an authenticated user to potentially enable an escalation of privilege via local access.

Data is provided by the National Vulnerability Database (NVD)
IntelGraphics Drivers Version < 15.33.53.5161
IntelGraphics Drivers Version >= 15.36 < 15.36.40.5162
IntelGraphics Drivers Version >= 15.40.0.0 < 15.40.47.5166
IntelGraphics Drivers Version >= 15.45.0.0 < 15.45.33.5164
IntelGraphics Drivers Version >= 27.20 < 27.20.100.8336
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.06% 0.147
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 4.6 3.9 6.4
AV:L/AC:L/Au:N/C:P/I:P/A:P
CWE-787 Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.