CVE-2020-24511

Description

Improper isolation of shared resources in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

Risk Information

Base Score
6.5
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
EPSS Score
Exploitation Probability
0.063

Associated Vulnerability

VulnerabilityOS Platform
Processor microcode for Intel CPUs (USN-4985-1) intel-microcode_3.20210608.0ubuntu0.18.04.1_i386.debLinux
Processor microcode for Intel CPUs (USN-4985-1) intel-microcode_3.20210608.0ubuntu0.18.04.1_amd64.debLinux
Processor microcode for Intel CPUs (USN-4985-1) intel-microcode_3.20210608.0ubuntu0.20.04.1_amd64.debLinux
Processor microcode for Intel CPUs (USN-4985-1) intel-microcode_3.20210608.0ubuntu0.20.10.1_amd64.debLinux
Processor microcode for Intel CPUs (USN-4985-1) intel-microcode_3.20210608.0ubuntu0.21.04.1_amd64.debLinux
SUSE-SU-2021:1929-1(SUSE Linux Enterprise Server 12-SP5 ) ucode-intel-20210525-3.35.1.x86_64.rpmLinux
SUSE-SU-2021:1929-1(SUSE Linux Enterprise Server 12-SP5 ) ucode-intel-debuginfo-20210525-3.35.1.x86_64.rpmLinux
SUSE-SU-2021:1929-1(SUSE Linux Enterprise Server 12-SP5 ) ucode-intel-debugsource-20210525-3.35.1.x86_64.rpmLinux
intel-microcode security update(DSA-4934-1) intel-microcode_3.20210608.2~deb10u1_i386.debLinux
intel-microcode security update(DSA-4934-1) intel-microcode_3.20210608.2~deb10u1_amd64.debLinux
Microcode_ctl update (ELSA-2021-2308) microcode_ctl-20210216-1.20210525.1.0.1.el8_4.x86_64.rpmLinux
(RHSA-2021:3027) microcode_ctl security, bug fix and enhancement update microcode_ctl-20210216-1.20210608.1.el8_4.x86_64.rpmLinux
(RHSA-2021:3028) microcode_ctl security, bug fix and enhancement update microcode_ctl-2.1-73.11.el7_9.x86_64.rpmLinux
Microcode_ctl update (ELSA-2021-3027) microcode_ctl-20210216-1.20210608.1.0.1.el8_4.x86_64.rpmLinux
(RHSA-2021:3028)Important: security, bug fix and enhancement update microcode_ctl-debuginfo-2.1-73.11.el7_9.x86_64.rpmLinux
Exposure of Resource to Wrong Sphere Vulnerability (CVE-2020-24511)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234