‼ CVE-2020-24441 ‼
📖 Read
via "National Vulnerability Database".
Adobe Acrobat Reader for Android version 20.6.2 (and earlier) does not properly restrict access to directories created by the application. This could result in disclosure of sensitive information stored in databases used by the application. Exploitation requires a victim to download and run a malicious application.📖 Read
via "National Vulnerability Database".
❌ Digging into the Dark Web: How Security Researchers Learn to Think Like the Bad Guys ❌
📖 Read
via "Threat Post".
Hacker forums are a rich source of threat intelligence.📖 Read
via "Threat Post".
Threat Post
Digging into the Dark Web: How Security Researchers Learn to Think Like the Bad Guys
Fortinet's Aamir Lakhani discusses hacker forums as a rich source of threat intelligence.
🕴 DARPA and Academia Jumpstart 5G IoT Security Efforts 🕴
📖 Read
via "Dark Reading".
With 5G IoT devices projected to hit 49 million units by 2023, researchers launch programs to keep IoT from becoming a blackhole of exfiltration.📖 Read
via "Dark Reading".
Dark Reading
DARPA and Academia Jumpstart 5G IoT Security Efforts
With 5G IoT devices projected to hit 49 million units by 2023, researchers launch programs to keep IoT from becoming a blackhole of exfiltration.
‼ CVE-2020-0588 ‼
📖 Read
via "National Vulnerability Database".
Improper conditions check in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.📖 Read
via "National Vulnerability Database".
‼ CVE-2020-8766 ‼
📖 Read
via "National Vulnerability Database".
Improper conditions check in the Intel(R) SGX DCAP software before version 1.6 may allow an unauthenticated user to potentially enable denial of service via adjacent access.📖 Read
via "National Vulnerability Database".
‼ CVE-2020-12310 ‼
📖 Read
via "National Vulnerability Database".
Insufficient control flow managementin firmware in some Intel(R) Client SSDs and some Intel(R) Data Center SSDs may allow an unauthenticated user to potentially enable information disclosure via physical access.📖 Read
via "National Vulnerability Database".
‼ CVE-2020-28271 ‼
📖 Read
via "National Vulnerability Database".
Prototype pollution vulnerability in 'deephas' versions 1.0.0 through 1.0.5 allows attacker to cause a denial of service and may lead to remote code execution.📖 Read
via "National Vulnerability Database".
‼ CVE-2019-11121 ‼
📖 Read
via "National Vulnerability Database".
Improper file permissions in the installer for the Intel(R) Media SDK for Windows before version 2019 R1 may allow an authenticated user to potentially enable escalation of privilege via local access.📖 Read
via "National Vulnerability Database".
‼ CVE-2020-8738 ‼
📖 Read
via "National Vulnerability Database".
Improper conditions check in Intel BIOS platform sample code for some Intel(R) Processors before may allow a privileged user to potentially enable escalation of privilege via local access.📖 Read
via "National Vulnerability Database".
‼ CVE-2020-8746 ‼
📖 Read
via "National Vulnerability Database".
Integer overflow in subsystem for Intel(R) AMT versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow an unauthenticated user to potentially enable denial of service via adjacent access.📖 Read
via "National Vulnerability Database".
‼ CVE-2020-8751 ‼
📖 Read
via "National Vulnerability Database".
Insufficient control flow management in subsystem for Intel(R) CSME versions before 11.8.80, Intel(R) TXE versions before 3.1.80 may allow an unauthenticated user to potentially enable information disclosure via physical access.📖 Read
via "National Vulnerability Database".
‼ CVE-2020-8692 ‼
📖 Read
via "National Vulnerability Database".
Insufficient access control in the firmware of the Intel(R) Ethernet 700 Series Controllers before version 7.3 may allow a privileged user to potentially enable escalation of privilege and/or denial of service via local access.📖 Read
via "National Vulnerability Database".
‼ CVE-2020-8755 ‼
📖 Read
via "National Vulnerability Database".
Race condition in subsystem for Intel(R) CSME versions before 12.0.70 and 14.0.45, Intel(R) SPS versions before E5_04.01.04.400 and E3_05.01.04.200 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.📖 Read
via "National Vulnerability Database".
‼ CVE-2020-8739 ‼
📖 Read
via "National Vulnerability Database".
Use of potentially dangerous function in Intel BIOS platform sample code for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege via local access.📖 Read
via "National Vulnerability Database".
‼ CVE-2020-8690 ‼
📖 Read
via "National Vulnerability Database".
Protection mechanism failure in Intel(R) Ethernet 700 Series Controllers before version 7.3 may allow a privileged user to potentially enable escalation of privilege and/or denial of service via local access.📖 Read
via "National Vulnerability Database".
‼ CVE-2020-8761 ‼
📖 Read
via "National Vulnerability Database".
Inadequate encryption strength in subsystem for Intel(R) CSME versions before 13.0.40 and 13.30.10 may allow an unauthenticated user to potentially enable information disclosure via physical access.📖 Read
via "National Vulnerability Database".
‼ CVE-2020-8754 ‼
📖 Read
via "National Vulnerability Database".
Out-of-bounds read in subsystem for Intel(R) AMT, Intel(R) ISM versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow an unauthenticated user to potentially enable information disclosure via network access.📖 Read
via "National Vulnerability Database".
‼ CVE-2020-8767 ‼
📖 Read
via "National Vulnerability Database".
Uncaught exception in the Intel(R) 50GbE IP Core for Intel(R) Quartus Prime before version 20.2 may allow an authenticated user to potentially enable denial of service via local access.📖 Read
via "National Vulnerability Database".
‼ CVE-2020-8750 ‼
📖 Read
via "National Vulnerability Database".
Use after free in Kernel Mode Driver for Intel(R) TXE versions before 3.1.80 and 4.0.30 may allow an authenticated user to potentially enable escalation of privilege via local access.📖 Read
via "National Vulnerability Database".
‼ CVE-2020-8740 ‼
📖 Read
via "National Vulnerability Database".
Out of bounds write in Intel BIOS platform sample code for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.📖 Read
via "National Vulnerability Database".
‼ CVE-2020-8760 ‼
📖 Read
via "National Vulnerability Database".
Integer overflow in subsystem for Intel(R) AMT versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 14.0.45 may allow a privileged user to potentially enable escalation of privilege via local access.📖 Read
via "National Vulnerability Database".