CVE-2020-8672 describes an out-of-bounds read vulnerability in the BIOS firmware of 8th and 9th Generation Intel Core and Celeron Processor 4000 Series. This flaw, rated 7.8 HIGH on CVSS, allows an unauthenticated local attacker to potentially achieve elevation of privilege or denial of service. While there is no known public exploit code (Metasploit, Nuclei, ExploitDB) and it's not listed in CISA's KEV catalog, Intel has released firmware updates to address it. Community discussion and media coverage are minimal, suggesting limited public awareness or active exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:intel:bios:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.