CVE-2020-24491

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
17/02/2021
Last modified:
21/07/2021

Description

Debug message containing addresses of memory transactions in some Intel(R) 10th Generation Core Processors supporting SGX may allow a privileged user to potentially enable information disclosure via local access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:intel:core_i3:1000g1:*:*:*:*:*:*:*
cpe:2.3:h:intel:core_i3:1000g4:*:*:*:*:*:*:*
cpe:2.3:h:intel:core_i3:1005g1:*:*:*:*:*:*:*
cpe:2.3:h:intel:core_i5:1030g4:*:*:*:*:*:*:*
cpe:2.3:h:intel:core_i5:1030g7:*:*:*:*:*:*:*
cpe:2.3:h:intel:core_i5:1035g1:*:*:*:*:*:*:*
cpe:2.3:h:intel:core_i5:1035g4:*:*:*:*:*:*:*
cpe:2.3:h:intel:core_i5:1035g7:*:*:*:*:*:*:*
cpe:2.3:h:intel:core_i7:1060g7:*:*:*:*:*:*:*
cpe:2.3:h:intel:core_i7:1065g7:*:*:*:*:*:*:*