CVE-2020-0534

HIGH

Intel CSME Firmware <12.0.64,13.0-13.0.32,14.0-14.0.33,14.5-14.5.12 - DoS via DAL

Title source: llm
STIX 2.1

Description

Improper input validation in the DAL subsystem for Intel(R) CSME versions before 12.0.64, 13.0.32, 14.0.33 and 14.5.12 may allow an unauthenticated user to potentially enable denial of service via network access.

References (3)

Core 3

Scores

CVSS v3 7.5
EPSS 0.0092
EPSS Percentile 76.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-20
Status published
Products (3)
intel/converged_security_management_engine_firmware 14.5.11
intel/converged_security_management_engine_firmware 12.0 - 12.0.64
intel/converged_security_management_engine_firmware 13.0 - 13.0.32
Published Jun 15, 2020
Tracked Since Feb 18, 2026