ID

VAR-202003-0351


CVE

CVE-2020-0505


TITLE

Intel(R) Graphics Driver Vulnerability in checking for exceptional conditions in

Trust: 0.8

sources: JVNDB: JVNDB-2020-003087

DESCRIPTION

Improper conditions check in Intel(R) Graphics Drivers before versions 15.33.49.5100, 15.36.38.5117, 15.40.44.5107, 15.45.30.5103, and 26.20.100.7212 may allow an authenticated user to potentially enable information disclosure and denial of service via local. Intel(R) Graphics Driver Exists in an exceptional condition check vulnerability.Information is obtained and service operation is interrupted (DoS) It may be put into a state. Intel Graphics Drivers is an integrated graphics driver from Intel Corporation. A security vulnerability exists in Intel Graphics Drivers. A local attacker could exploit this vulnerability to obtain information. The following products and versions are affected: Intel Graphics Drivers prior to 15.33.49.5100, prior to 15.36.38.5117, prior to 15.40.44.5107, prior to 15.45.30.5103, and prior to 26.20.100.7212

Trust: 1.71

sources: NVD: CVE-2020-0505 // JVNDB: JVNDB-2020-003087 // VULHUB: VHN-161939

AFFECTED PRODUCTS

vendor:intelmodel:graphics driverscope:ltversion:15.33.49.5100

Trust: 1.0

vendor:intelmodel:graphics driverscope:ltversion:15.36.38.5117

Trust: 1.0

vendor:intelmodel:graphics driverscope:gteversion:15.45

Trust: 1.0

vendor:intelmodel:graphics driverscope:ltversion:26.20.100.7212

Trust: 1.0

vendor:intelmodel:graphics driverscope:ltversion:15.45.30.5103

Trust: 1.0

vendor:intelmodel:graphics driverscope:ltversion:15.40.44.5107

Trust: 1.0

vendor:intelmodel:graphics driverscope:gteversion:15.33

Trust: 1.0

vendor:intelmodel:graphics driverscope:gteversion:15.36

Trust: 1.0

vendor:intelmodel:graphics driverscope:gteversion:15.40

Trust: 1.0

vendor:intelmodel:graphics driverscope:gteversion:26.20

Trust: 1.0

vendor:intelmodel:graphics driverscope:eqversion:15.33.49.5100

Trust: 0.8

vendor:intelmodel:graphics driverscope:eqversion:15.36.38.5117

Trust: 0.8

vendor:intelmodel:graphics driverscope:eqversion:15.40.44.5107

Trust: 0.8

vendor:intelmodel:graphics driverscope:eqversion:15.45.30.5103

Trust: 0.8

vendor:intelmodel:graphics driverscope:eqversion:26.20.100.7212

Trust: 0.8

sources: JVNDB: JVNDB-2020-003087 // NVD: CVE-2020-0505

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2020-0505
value: MEDIUM

Trust: 1.0

NVD: JVNDB-2020-003087
value: MEDIUM

Trust: 0.8

CNNVD: CNNVD-202003-564
value: MEDIUM

Trust: 0.6

VULHUB: VHN-161939
value: LOW

Trust: 0.1

nvd@nist.gov: CVE-2020-0505
severity: LOW
baseScore: 3.6
vectorString: AV:L/AC:L/AU:N/C:P/I:N/A:P
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: NONE
availabilityImpact: PARTIAL
exploitabilityScore: 3.9
impactScore: 4.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.0

NVD: JVNDB-2020-003087
severity: LOW
baseScore: 3.6
vectorString: AV:L/AC:L/AU:N/C:P/I:N/A:P
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: NONE
availabilityImpact: PARTIAL
exploitabilityScore: NONE
impactScore: NONE
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.8

VULHUB: VHN-161939
severity: LOW
baseScore: 3.6
vectorString: AV:L/AC:L/AU:N/C:P/I:N/A:P
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: NONE
availabilityImpact: PARTIAL
exploitabilityScore: 3.9
impactScore: 4.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

nvd@nist.gov: CVE-2020-0505
baseSeverity: MEDIUM
baseScore: 6.1
vectorString: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:L
attackVector: LOCAL
attackComplexity: LOW
privilegesRequired: LOW
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: NONE
availabilityImpact: LOW
exploitabilityScore: 1.8
impactScore: 4.2
version: 3.1

Trust: 1.0

NVD: JVNDB-2020-003087
baseSeverity: MEDIUM
baseScore: 6.1
vectorString: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:L
attackVector: LOCAL
attackComplexity: LOW
privilegesRequired: LOW
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: NONE
availabilityImpact: LOW
exploitabilityScore: NONE
impactScore: NONE
version: 3.0

Trust: 0.8

sources: VULHUB: VHN-161939 // JVNDB: JVNDB-2020-003087 // CNNVD: CNNVD-202003-564 // NVD: CVE-2020-0505

PROBLEMTYPE DATA

problemtype:NVD-CWE-noinfo

Trust: 1.0

problemtype:CWE-754

Trust: 0.9

sources: VULHUB: VHN-161939 // JVNDB: JVNDB-2020-003087 // NVD: CVE-2020-0505

THREAT TYPE

local

Trust: 0.6

sources: CNNVD: CNNVD-202003-564

TYPE

code problem

Trust: 0.6

sources: CNNVD: CNNVD-202003-564

CONFIGURATIONS

sources: JVNDB: JVNDB-2020-003087

PATCH

title:INTEL-SA-00315url:https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00315.html

Trust: 0.8

title:Intel Graphics Drivers Security vulnerabilitiesurl:http://www.cnnvd.org.cn/web/xxk/bdxqById.tag?id=111510

Trust: 0.6

sources: JVNDB: JVNDB-2020-003087 // CNNVD: CNNVD-202003-564

EXTERNAL IDS

db:NVDid:CVE-2020-0505

Trust: 2.5

db:JVNid:JVNVU94445466

Trust: 0.8

db:JVNDBid:JVNDB-2020-003087

Trust: 0.8

db:CNNVDid:CNNVD-202003-564

Trust: 0.7

db:LENOVOid:LEN-30555

Trust: 0.6

db:AUSCERTid:ESB-2020.0871

Trust: 0.6

db:VULHUBid:VHN-161939

Trust: 0.1

sources: VULHUB: VHN-161939 // JVNDB: JVNDB-2020-003087 // CNNVD: CNNVD-202003-564 // NVD: CVE-2020-0505

REFERENCES

url:https://security.netapp.com/advisory/ntap-20200320-0003/

Trust: 1.7

url:https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00315.html

Trust: 1.7

url:https://nvd.nist.gov/vuln/detail/cve-2020-0505

Trust: 1.4

url:https://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2020-0505

Trust: 0.8

url:http://jvn.jp/vu/jvnvu94445466/index.html

Trust: 0.8

url:https://www.auscert.org.au/bulletins/esb-2020.0871/

Trust: 0.6

url:https://support.lenovo.com/us/en/product_security/len-30555

Trust: 0.6

sources: VULHUB: VHN-161939 // JVNDB: JVNDB-2020-003087 // CNNVD: CNNVD-202003-564 // NVD: CVE-2020-0505

SOURCES

db:VULHUBid:VHN-161939
db:JVNDBid:JVNDB-2020-003087
db:CNNVDid:CNNVD-202003-564
db:NVDid:CVE-2020-0505

LAST UPDATE DATE

2024-11-23T20:06:51.013000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-161939date:2021-07-21T00:00:00
db:JVNDBid:JVNDB-2020-003087date:2020-04-03T00:00:00
db:CNNVDid:CNNVD-202003-564date:2021-08-16T00:00:00
db:NVDid:CVE-2020-0505date:2024-11-21T04:53:38.053

SOURCES RELEASE DATE

db:VULHUBid:VHN-161939date:2020-03-12T00:00:00
db:JVNDBid:JVNDB-2020-003087date:2020-04-03T00:00:00
db:CNNVDid:CNNVD-202003-564date:2020-03-10T00:00:00
db:NVDid:CVE-2020-0505date:2020-03-12T18:15:12.103