CVE Vulnerabilities

CVE-2020-24489

Incomplete Cleanup

Published: Jun 09, 2021 | Modified: Nov 21, 2024
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
8.8 IMPORTANT
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Ubuntu
HIGH
root.io logo minimus.io logo echo.ai logo

Incomplete cleanup in some Intel(R) VT-d products may allow an authenticated user to potentially enable escalation of privilege via local access.

Weakness

The product does not properly “clean up” and remove temporary or supporting resources after they have been used.

Affected Software

NameVendorStart VersionEnd Version
Atom_x5-e3930Intel- (including)- (including)
Atom_x5-e3940Intel- (including)- (including)
Atom_x7-e3950Intel- (including)- (including)
Celeron_j1750Intel- (including)- (including)
Celeron_j1800Intel- (including)- (including)
Celeron_j1850Intel- (including)- (including)
Celeron_j1900Intel- (including)- (including)
Celeron_j3060Intel- (including)- (including)
Celeron_j3160Intel- (including)- (including)
Celeron_j3355Intel- (including)- (including)
Celeron_j3355eIntel- (including)- (including)
Celeron_j3455Intel- (including)- (including)
Celeron_j3455eIntel- (including)- (including)
Celeron_j4005Intel- (including)- (including)
Celeron_j4025Intel- (including)- (including)
Celeron_j4105Intel- (including)- (including)
Celeron_j4115Intel- (including)- (including)
Celeron_j4125Intel- (including)- (including)
Celeron_j6412Intel- (including)- (including)
Celeron_j6413Intel- (including)- (including)
Celeron_n2805Intel- (including)- (including)
Celeron_n2806Intel- (including)- (including)
Celeron_n2807Intel- (including)- (including)
Celeron_n2808Intel- (including)- (including)
Celeron_n2810Intel- (including)- (including)
Celeron_n2815Intel- (including)- (including)
Celeron_n2820Intel- (including)- (including)
Celeron_n2830Intel- (including)- (including)
Celeron_n2840Intel- (including)- (including)
Celeron_n2910Intel- (including)- (including)
Celeron_n2920Intel- (including)- (including)
Celeron_n2930Intel- (including)- (including)
Celeron_n2940Intel- (including)- (including)
Celeron_n3000Intel- (including)- (including)
Celeron_n3010Intel- (including)- (including)
Celeron_n3050Intel- (including)- (including)
Celeron_n3060Intel- (including)- (including)
Celeron_n3150Intel- (including)- (including)
Celeron_n3160Intel- (including)- (including)
Celeron_n3350Intel- (including)- (including)
Celeron_n3350eIntel- (including)- (including)
Celeron_n3450Intel- (including)- (including)
Celeron_n4000Intel- (including)- (including)
Celeron_n4000cIntel- (including)- (including)
Celeron_n4020Intel- (including)- (including)
Celeron_n4020cIntel- (including)- (including)
Celeron_n4100Intel- (including)- (including)
Celeron_n4120Intel- (including)- (including)
Celeron_n4500Intel- (including)- (including)
Celeron_n4505Intel- (including)- (including)
Celeron_n5095Intel- (including)- (including)
Celeron_n5100Intel- (including)- (including)
Celeron_n5105Intel- (including)- (including)
Celeron_n6210Intel- (including)- (including)
Celeron_n6211Intel- (including)- (including)
Core_i3-1000g1Intel- (including)- (including)
Core_i3-1000g4Intel- (including)- (including)
Core_i3-1000ng4Intel- (including)- (including)
Core_i3-1005g1Intel- (including)- (including)
Core_i3-10100Intel- (including)- (including)
Core_i3-10100eIntel- (including)- (including)
Core_i3-10100fIntel- (including)- (including)
Core_i3-10100tIntel- (including)- (including)
Core_i3-10100teIntel- (including)- (including)
Core_i3-10100yIntel- (including)- (including)
Core_i3-10105Intel- (including)- (including)
Core_i3-10105fIntel- (including)- (including)
Core_i3-10105tIntel- (including)- (including)
Core_i3-10110uIntel- (including)- (including)
Core_i3-10110yIntel- (including)- (including)
Core_i3-10300Intel- (including)- (including)
Core_i3-10300tIntel- (including)- (including)
Core_i3-10305Intel- (including)- (including)
Core_i3-10305tIntel- (including)- (including)
Core_i3-10320Intel- (including)- (including)
Core_i3-10325Intel- (including)- (including)
Core_i3-11100bIntel- (including)- (including)
Core_i3-1110g4Intel- (including)- (including)
Core_i3-1115g4Intel- (including)- (including)
Core_i3-1115g4eIntel- (including)- (including)
Core_i3-1115greIntel- (including)- (including)
Core_i3-1120g4Intel- (including)- (including)
Core_i3-1125g4Intel- (including)- (including)
Core_i3-l13g4Intel- (including)- (including)
Core_i5-10200hIntel- (including)- (including)
Core_i5-10210uIntel- (including)- (including)
Core_i5-10210yIntel- (including)- (including)
Core_i5-10300hIntel- (including)- (including)
Core_i5-1030g4Intel- (including)- (including)
Core_i5-1030g7Intel- (including)- (including)
Core_i5-1030ng7Intel- (including)- (including)
Core_i5-10310uIntel- (including)- (including)
Core_i5-10310yIntel- (including)- (including)
Core_i5-1035g1Intel- (including)- (including)
Core_i5-1035g4Intel- (including)- (including)
Core_i5-1035g7Intel- (including)- (including)
Core_i5-1038ng7Intel- (including)- (including)
Core_i5-10400Intel- (including)- (including)
Core_i5-10400fIntel- (including)- (including)
Core_i5-10400hIntel- (including)- (including)
Core_i5-10400tIntel- (including)- (including)
Core_i5-10500Intel- (including)- (including)
Core_i5-10500eIntel- (including)- (including)
Core_i5-10500hIntel- (including)- (including)
Core_i5-10500tIntel- (including)- (including)
Core_i5-10500teIntel- (including)- (including)
Core_i5-10505Intel- (including)- (including)
Core_i5-10600Intel- (including)- (including)
Core_i5-10600kIntel- (including)- (including)
Core_i5-10600kfIntel- (including)- (including)
Core_i5-10600tIntel- (including)- (including)
Core_i5-11260hIntel- (including)- (including)
Core_i5-11300hIntel- (including)- (including)
Core_i5-1130g7Intel- (including)- (including)
Core_i5-11320hIntel- (including)- (including)
Core_i5-1135g7Intel- (including)- (including)
Core_i5-11400Intel- (including)- (including)
Core_i5-11400fIntel- (including)- (including)
Core_i5-11400hIntel- (including)- (including)
Core_i5-11400tIntel- (including)- (including)
Core_i5-1140g7Intel- (including)- (including)
Core_i5-1145g7Intel- (including)- (including)
Core_i5-1145g7eIntel- (including)- (including)
Core_i5-1145greIntel- (including)- (including)
Core_i5-11500Intel- (including)- (including)
Core_i5-11500bIntel- (including)- (including)
Core_i5-11500hIntel- (including)- (including)
Core_i5-11500tIntel- (including)- (including)
Core_i5-1155g7Intel- (including)- (including)
Core_i5-11600Intel- (including)- (including)
Core_i5-11600kIntel- (including)- (including)
Core_i5-11600kfIntel- (including)- (including)
Core_i5-11600tIntel- (including)- (including)
Core_i5-l16g7Intel- (including)- (including)
Core_i7-10510uIntel- (including)- (including)
Core_i7-10510yIntel- (including)- (including)
Core_i7-1060g7Intel- (including)- (including)
Core_i7-1060ng7Intel- (including)- (including)
Core_i7-10610uIntel- (including)- (including)
Core_i7-1065g7Intel- (including)- (including)
Core_i7-1068ng7Intel- (including)- (including)
Core_i7-10700Intel- (including)- (including)
Core_i7-10700eIntel- (including)- (including)
Core_i7-10700fIntel- (including)- (including)
Core_i7-10700kIntel- (including)- (including)
Core_i7-10700kfIntel- (including)- (including)
Core_i7-10700tIntel- (including)- (including)
Core_i7-10700teIntel- (including)- (including)
Core_i7-10710uIntel- (including)- (including)
Core_i7-10750hIntel- (including)- (including)
Core_i7-10810uIntel- (including)- (including)
Core_i7-10850hIntel- (including)- (including)
Core_i7-10870hIntel- (including)- (including)
Core_i7-10875hIntel- (including)- (including)
Core_i7-11370hIntel- (including)- (including)
Core_i7-11375hIntel- (including)- (including)
Core_i7-11390hIntel- (including)- (including)
Core_i7-1160g7Intel- (including)- (including)
Core_i7-1165g7Intel- (including)- (including)
Core_i7-11700Intel- (including)- (including)
Core_i7-11700bIntel- (including)- (including)
Core_i7-11700fIntel- (including)- (including)
Core_i7-11700kIntel- (including)- (including)
Core_i7-11700kfIntel- (including)- (including)
Core_i7-11700tIntel- (including)- (including)
Core_i7-11800hIntel- (including)- (including)
Core_i7-1180g7Intel- (including)- (including)
Core_i7-11850hIntel- (including)- (including)
Core_i7-1185g7Intel- (including)- (including)
Core_i7-1185g7eIntel- (including)- (including)
Core_i7-1185greIntel- (including)- (including)
Core_i7-1195g7Intel- (including)- (including)
Core_i9-10850kIntel- (including)- (including)
Core_i9-10885hIntel- (including)- (including)
Core_i9-10900Intel- (including)- (including)
Core_i9-10900eIntel- (including)- (including)
Core_i9-10900fIntel- (including)- (including)
Core_i9-10900kIntel- (including)- (including)
Core_i9-10900kfIntel- (including)- (including)
Core_i9-10900tIntel- (including)- (including)
Core_i9-10900teIntel- (including)- (including)
Core_i9-10910Intel- (including)- (including)
Core_i9-10980hkIntel- (including)- (including)
Core_i9-11900Intel- (including)- (including)
Core_i9-11900fIntel- (including)- (including)
Core_i9-11900hIntel- (including)- (including)
Core_i9-11900kIntel- (including)- (including)
Core_i9-11900kbIntel- (including)- (including)
Core_i9-11900kfIntel- (including)- (including)
Core_i9-11900tIntel- (including)- (including)
Core_i9-11950hIntel- (including)- (including)
Core_i9-11980hkIntel- (including)- (including)
Pentium_j2850Intel- (including)- (including)
Pentium_j2900Intel- (including)- (including)
Pentium_j3710Intel- (including)- (including)
Pentium_j4205Intel- (including)- (including)
Pentium_j6426Intel- (including)- (including)
Pentium_n3510Intel- (including)- (including)
Pentium_n3520Intel- (including)- (including)
Pentium_n3530Intel- (including)- (including)
Pentium_n3540Intel- (including)- (including)
Pentium_n3700Intel- (including)- (including)
Pentium_n3710Intel- (including)- (including)
Pentium_n4200Intel- (including)- (including)
Pentium_n4200eIntel- (including)- (including)
Pentium_n6415Intel- (including)- (including)
Pentium_silver_a1030Intel- (including)- (including)
Pentium_silver_j5005Intel- (including)- (including)
Pentium_silver_j5040Intel- (including)- (including)
Pentium_silver_n5000Intel- (including)- (including)
Pentium_silver_n5030Intel- (including)- (including)
Pentium_silver_n6000Intel- (including)- (including)
Pentium_silver_n6005Intel- (including)- (including)
Red Hat Enterprise Linux 6 Extended Lifecycle SupportRedHatmicrocode_ctl-2:1.17-33.33.el6_10*
Red Hat Enterprise Linux 7RedHatmicrocode_ctl-2:2.1-73.9.el7_9*
Red Hat Enterprise Linux 7RedHatmicrocode_ctl-2:2.1-73.11.el7_9*
Red Hat Enterprise Linux 7.2 Advanced Update SupportRedHatmicrocode_ctl-2:2.1-12.37.el7_2*
Red Hat Enterprise Linux 7.2 Advanced Update SupportRedHatmicrocode_ctl-2:2.1-12.39.el7_2*
Red Hat Enterprise Linux 7.3 Advanced Update SupportRedHatmicrocode_ctl-2:2.1-16.40.el7_3*
Red Hat Enterprise Linux 7.3 Advanced Update SupportRedHatmicrocode_ctl-2:2.1-16.42.el7_3*
Red Hat Enterprise Linux 7.4 Advanced Update SupportRedHatmicrocode_ctl-2:2.1-22.39.el7_4*
Red Hat Enterprise Linux 7.4 Advanced Update SupportRedHatmicrocode_ctl-2:2.1-22.41.el7_4*
Red Hat Enterprise Linux 7.4 Telco Extended Update SupportRedHatmicrocode_ctl-2:2.1-22.39.el7_4*
Red Hat Enterprise Linux 7.4 Telco Extended Update SupportRedHatmicrocode_ctl-2:2.1-22.41.el7_4*
Red Hat Enterprise Linux 7.4 Update Services for SAP SolutionsRedHatmicrocode_ctl-2:2.1-22.39.el7_4*
Red Hat Enterprise Linux 7.4 Update Services for SAP SolutionsRedHatmicrocode_ctl-2:2.1-22.41.el7_4*
Red Hat Enterprise Linux 7.6 Advanced Update Support(Disable again in 2026 - SPRHEL-7118)RedHatmicrocode_ctl-2:2.1-47.21.el7_6*
Red Hat Enterprise Linux 7.6 Advanced Update Support(Disable again in 2026 - SPRHEL-7118)RedHatmicrocode_ctl-2:2.1-47.23.el7_6*
Red Hat Enterprise Linux 7.6 Telco Extended Update SupportRedHatmicrocode_ctl-2:2.1-47.21.el7_6*
Red Hat Enterprise Linux 7.6 Telco Extended Update SupportRedHatmicrocode_ctl-2:2.1-47.23.el7_6*
Red Hat Enterprise Linux 7.6 Update Services for SAP SolutionsRedHatmicrocode_ctl-2:2.1-47.21.el7_6*
Red Hat Enterprise Linux 7.6 Update Services for SAP SolutionsRedHatmicrocode_ctl-2:2.1-47.23.el7_6*
Red Hat Enterprise Linux 7.7 Extended Update SupportRedHatmicrocode_ctl-2:2.1-53.16.el7_7*
Red Hat Enterprise Linux 7.7 Extended Update SupportRedHatmicrocode_ctl-2:2.1-53.18.el7_7*
Red Hat Enterprise Linux 8RedHatmicrocode_ctl-4:20210216-1.20210525.1.el8_4*
Red Hat Enterprise Linux 8RedHatmicrocode_ctl-4:20210216-1.20210608.1.el8_4*
Red Hat Enterprise Linux 8.1 Extended Update SupportRedHatmicrocode_ctl-4:20190618-1.20210525.1.el8_1*
Red Hat Enterprise Linux 8.1 Extended Update SupportRedHatmicrocode_ctl-4:20190618-1.20210608.1.el8_1*
Red Hat Enterprise Linux 8.2 Extended Update SupportRedHatmicrocode_ctl-4:20191115-4.20210525.1.el8_2*
Red Hat Enterprise Linux 8.2 Extended Update SupportRedHatmicrocode_ctl-4:20191115-4.20210608.1.el8_2*
Red Hat Virtualization 4 for Red Hat Enterprise Linux 7RedHatredhat-virtualization-host-0:4.3.16-20210615.0.el7_9*
Red Hat Virtualization 4 for Red Hat Enterprise Linux 8RedHatredhat-virtualization-host-0:4.4.6-20210615.0.el8_4*
Intel-microcodeUbuntubionic*
Intel-microcodeUbuntudevel*
Intel-microcodeUbuntuesm-infra-legacy/trusty*
Intel-microcodeUbuntuesm-infra/bionic*
Intel-microcodeUbuntuesm-infra/focal*
Intel-microcodeUbuntuesm-infra/xenial*
Intel-microcodeUbuntufocal*
Intel-microcodeUbuntugroovy*
Intel-microcodeUbuntuhirsute*
Intel-microcodeUbuntuimpish*
Intel-microcodeUbuntujammy*
Intel-microcodeUbuntutrusty*
Intel-microcodeUbuntutrusty/esm*
Intel-microcodeUbuntuxenial*

Potential Mitigations

References