CVE-2020-0586

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
15/06/2020
Last modified:
22/07/2020

Description

Improper initialization in subsystem for Intel(R) SPS versions before SPS_E3_04.01.04.109.0 and SPS_E3_04.08.04.070.0 may allow an authenticated user to potentially enable escalation of privilege and/or denial of service via local access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:intel:server_platform_services:*:*:*:*:*:*:*:* sps_e3_04.00.00.000.0 (including) sps_e3_04.01.04.109.0 (excluding)
cpe:2.3:a:intel:server_platform_services:*:*:*:*:*:*:*:* sps_e3_04.08.00.000.0 (including) sps_e3_04.08.04.070.0 (excluding)
cpe:2.3:a:intel:server_platform_services:*:*:*:*:*:*:*:* sps_e5_04.00.00.000.0 (including) sps_e5_04.01.04.380.0 (excluding)
cpe:2.3:a:intel:server_platform_services:*:*:*:*:*:*:*:* sps_soc-a_04.00.00.000.0 (including) sps_soc-a_04.00.04.211.0 (excluding)
cpe:2.3:a:intel:server_platform_services:*:*:*:*:*:*:*:* sps_soc-x_04.00.00.000.0 (including) sps_soc-x_04.00.04.128.0 (excluding)