CVE-2020-24489

Updated: 2024-11-30 01:55:14.713702

Description:

Incomplete cleanup in some Intel(R) VT-d products may allow an authenticated user to potentially enable escalation of privilege via local access.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x MEDIUM 4.6000000000000005
CVSS Version 3.x HIGH 8.8

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

CentOS 6 ELS linux-firmware 20171128-56 8.8 HIGH Not Vulnerable 2025-02-18 06:34:27
CentOS 6 ELS microcode_ctl 1.17-33.29 8.8 HIGH Released CLSA-2021:1632262337 2022-05-05 12:01:48
CentOS 6 ELS java-1.8.0-openjdk 1.8.0 8.8 HIGH Not Vulnerable 2025-02-20 06:38:52
CentOS 6 ELS sos 3.2 8.8 HIGH Not Vulnerable 2025-02-18 06:34:22
CentOS 6 ELS kernel 2.6.32 8.8 HIGH Not Vulnerable 2025-02-22 01:12:39
CentOS 7 ELS microcode_ctl 2.1 8.8 HIGH Already Fixed 2023-11-07 03:51:14
CentOS 7 ELS linux-firmware 20200421-80 8.8 HIGH Already Fixed 2025-02-18 06:34:27
CentOS 7 ELS sos 3.9 8.8 HIGH Not Vulnerable 2025-02-20 06:38:50
CentOS 7 ELS postgresql 9.2.24 8.8 HIGH Not Vulnerable 2025-02-20 06:38:50
CentOS 7 ELS java-1.8.0-openjdk 1.8.0 8.8 HIGH Not Vulnerable 2025-02-20 06:38:52
Total: 32