Insufficient control flow management in subsystem for Intel(R) CSME versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 13.0.40, 13.30.10, 14.0.45 and 14.5.25 , Intel(R) TXE versions before 3.1.80 and 4.0.30 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.

Project Subscriptions

Vendors Products
Converged Security And Manageability Engine Subscribe
Trusted Execution Technology Subscribe
Siemens Subscribe
Simatic Drive Controller Subscribe
Simatic Drive Controller Firmware Subscribe
Simatic Et200sp 1515sp Pc2 Subscribe
Simatic Et200sp 1515sp Pc2 Firmware Subscribe
Simatic Field Pg M5 Subscribe
Simatic Field Pg M5 Firmware Subscribe
Simatic Field Pg M6 Subscribe
Simatic Field Pg M6 Firmware Subscribe
Simatic Ipc127e Subscribe
Simatic Ipc127e Firmware Subscribe
Simatic Ipc427e Subscribe
Simatic Ipc427e Firmware Subscribe
Simatic Ipc477e Subscribe
Simatic Ipc477e Firmware Subscribe
Simatic Ipc477e Pro Subscribe
Simatic Ipc527g Subscribe
Simatic Ipc527g Firmware Subscribe
Simatic Ipc547g Subscribe
Simatic Ipc547g Firmware Subscribe
Simatic Ipc627e Subscribe
Simatic Ipc627e Firmware Subscribe
Simatic Ipc647e Subscribe
Simatic Ipc647e Firmware Subscribe
Simatic Ipc667e Subscribe
Simatic Ipc667e Firmware Subscribe
Simatic Ipc847e Subscribe
Simatic Ipc847e Firmware Subscribe
Simatic Itp1000 Subscribe
Simatic Itp1000 Firmware Subscribe
Sinumerik 828d Hw Pu.4 Subscribe
Sinumerik 828d Hw Pu.4 Firmware Subscribe
Sinumerik 840d Sl Ht 10 Subscribe
Sinumerik 840d Sl Ht 10 Firmware Subscribe
Sinumerik Mc Mcu 1720 Subscribe
Sinumerik Mc Mcu 1720 Firmware Subscribe
Sinumerik One Subscribe
Sinumerik One Firmware Subscribe
Sinumerik One Ncu 1740 Subscribe
Sinumerik One Ncu 1740 Firmware Subscribe
Sinumerik One Ppu 1740 Subscribe
Sinumerik One Ppu 1740 Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2020-29593 Insufficient control flow management in subsystem for Intel(R) CSME versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 13.0.40, 13.30.10, 14.0.45 and 14.5.25 , Intel(R) TXE versions before 3.1.80 and 4.0.30 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: intel

Published:

Updated: 2024-08-04T10:12:09.559Z

Reserved: 2020-02-06T00:00:00

Link: CVE-2020-8745

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-11-12T18:15:17.300

Modified: 2025-03-28T15:19:45.743

Link: CVE-2020-8745

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses