Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.144120
Category:Denial of Service
Title:Intel Active Management Technology DoS Vulnerability (INTEL-SA-00295)
Summary:Intel Active Management Technology (AMT) is prone to a denial; of service (DoS) vulnerability.
Description:Summary:
Intel Active Management Technology (AMT) is prone to a denial
of service (DoS) vulnerability.

Vulnerability Insight:
Out-of-bounds read in IPv6 subsystem in Intel(R) AMT may allow
an unauthenticated user to potentially enable denial of service via network access.

Note: CVE-2020-0597 as assigned by Intel correspond to a subset of the CVEs disclosed in the
linked 'Treck IP stacks contain multiple vulnerabilities' advisory (covering the 'Ripple20'
called vulnerabilities) and is matching CVE-2020-11899.

Affected Software/OS:
Intel Active Management Technology version 14.0.32.

Solution:
Update to version 14.0.33 or later.

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2020-0597
CERT/CC vulnerability note: VU#257161
https://www.kb.cert.org/vuls/id/257161
https://support.lenovo.com/de/en/product_security/len-30041
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00295.html
Common Vulnerability Exposure (CVE) ID: CVE-2020-11899
Cisco Security Advisory: 20200617 Multiple Vulnerabilities in Treck IP Stack Affecting Cisco Products: June 2020
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-treck-ip-stack-JyBQ5GyC
https://cwe.mitre.org/data/definitions/125.html
https://jsof-tech.com/vulnerability-disclosure-policy/
https://www.dell.com/support/article/de-de/sln321836/dell-response-to-the-ripple20-vulnerabilities
https://www.jsof-tech.com/ripple20/
https://www.kb.cert.org/vuls/id/257161/
https://www.treck.com
CopyrightCopyright (C) 2020 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.