CVE-2020-8696

MEDIUM

Intel(R) Processors - Info Disclosure

Title source: llm
STIX 2.1

Description

Improper removal of sensitive information before storage or transfer in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

References (4)

Core 4
Core References
Third Party Advisory x_refsource_confirm
https://security.netapp.com/advisory/ntap-20201113-0006/
Mailing List, Third Party Advisory mailing-list x_refsource_mlist
https://lists.debian.org/debian-lts-announce/2021/02/msg00007.html

Scores

CVSS v3 5.5
EPSS 0.0044
EPSS Percentile 35.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-212
Status published
Products (7)
debian/debian_linux 9.0
fedoraproject/fedora 31
intel/microcode
netapp/clustered_data_ontap
netapp/hci_storage_node_bios
netapp/hcl_compute_node_bios
netapp/solidfire_bios
Published Nov 12, 2020
Tracked Since Feb 18, 2026