Out-of-bounds write in Intel products - CVE-2020-8679
Published: August 13, 2020
Vulnerability details
The vulnerability allows a local user to compromise vulnerable system.
The vulnerability exists due to a boundary error when processing untrusted input in Kernel Mode Driver for some Intel Graphics Drivers. A local user can create a specially crafted file, trick the victim into opening it using the affected software, trigger out-of-bounds write and execute arbitrary code on the target system.
Affected software
7th Generation Intel Core Processors
8th Generation Intel Core Processors
3rd Generation Intel Core Processors
4th generation Intel Core processors
5th generation Intel Core processors
10th Generation Intel Core Processors
9th Generation Intel Core Processors
How to mitigate CVE-2020-8679
7th Generation Intel Core Processors - update to 26.20.100.7755
8th Generation Intel Core Processors - update to 26.20.100.7755
3rd Generation Intel Core Processors - update to 26.20.100.7755
4th generation Intel Core processors - update to 26.20.100.7755
5th generation Intel Core processors - update to 26.20.100.7755
9th Generation Intel Core Processors - update to 26.20.100.7755
10th Generation Intel Core Processors - update to 26.20.100.7755