VDB

ALINUX2-SA-2021%3A0038

ALINUX2-SA-2021%3A0038 PUBLISHED CVSS 2.799999952316284 LOW

Package updates are available for Alibaba Cloud Linux 2.1903 that fix the following vulnerabilities: CVE-2020-24489: Incomplete cleanup in some Intel(R) VT-d products may allow an authenticated user to potentially enable escalation of privilege via local access. CVE-2020-24511: Improper isolation of shared resources in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. CVE-2020-24512: Observable timing discrepancy in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. CVE-2020-24513: Domain-bypass transient execution vulnerability in some Intel Atom(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

Risk Scores

CVSS 3.1
2.799999952316284
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:N/A:N

Affected Products

VendorProductVersions
Alibaba Cloudmicrocode_ctl

Timeline

  • Jun 9, 2021 CVE Published
  • Jun 9, 2021 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›