MEDIUM✓ PATCH🇵🇱 Wersja polska

CVE-2026-20901

CVSS 4.0v4.0pub. 2026-08-11upd. 2026-08-28

Improper input validation for some Intel(R) Xeon(R) processors within firmware may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable data alteration. This result may potentially occur via local access when attack requirements are present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (none), integrity (none) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (high) and availability (none) impacts.

CVSS Vector
CVSS:4.0/AV:L/AC:H/AT:P/PR:H/UI:N/VC:N/VI:N/VA:N/SC:N/SI:H/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
  • Intel Xeon Bronze 3408u

    HW
    Intel
    all versions
  • Intel Xeon Bronze 3408u Firmware

    OS
    Intel
    all versions
  • Intel Xeon Gold 5403n

    HW
    Intel
    all versions
  • Intel Xeon Gold 5403n Firmware

    OS
    Intel
    all versions
  • Intel Xeon Gold 5411n

    HW
    Intel
    all versions
  • Intel Xeon Gold 5411n Firmware

    OS
    Intel
    all versions
  • Intel Xeon Gold 5412u

    HW
    Intel
    all versions
  • Intel Xeon Gold 5412u Firmware

    OS
    Intel
    all versions
  • Intel Xeon Gold 5415\+

    HW
    Intel
    all versions
  • Intel Xeon Gold 5415\+ Firmware

    OS
    Intel
    all versions
  • Intel Xeon Gold 5416s

    HW
    Intel
    all versions
  • Intel Xeon Gold 5416s Firmware

    OS
    Intel
    all versions
  • Intel Xeon Gold 5418n

    HW
    Intel
    all versions
  • Intel Xeon Gold 5418n Firmware

    OS
    Intel
    all versions
  • Intel Xeon Gold 5418y

    HW
    Intel
    all versions
  • Intel Xeon Gold 5418y Firmware

    OS
    Intel
    all versions
  • Intel Xeon Gold 5420\+

    HW
    Intel
    all versions
  • Intel Xeon Gold 5420\+ Firmware

    OS
    Intel
    all versions
  • Intel Xeon Gold 5423n

    HW
    Intel
    all versions
  • Intel Xeon Gold 5423n Firmware

    OS
    Intel
    all versions
  • Intel Xeon Gold 5433n

    HW
    Intel
    all versions
  • Intel Xeon Gold 5433n Firmware

    OS
    Intel
    all versions
  • Intel Xeon Gold 6403n

    HW
    Intel
    all versions
  • Intel Xeon Gold 6403n Firmware

    OS
    Intel
    all versions
  • Intel Xeon Gold 6414u

    HW
    Intel
    all versions
  • Intel Xeon Gold 6414u Firmware

    OS
    Intel
    all versions
  • Intel Xeon Gold 6416h

    HW
    Intel
    all versions
  • Intel Xeon Gold 6416h Firmware

    OS
    Intel
    all versions
  • Intel Xeon Gold 6418h

    HW
    Intel
    all versions
  • Intel Xeon Gold 6418h Firmware

    OS
    Intel
    all versions
🟢
PATCH AVAILABLE
Vendor update available. Deploy in standard maintenance cycle.
CWE
References

Related vulnerabilities

CVE-2026-20885HIGH7.0same product

Improper authentication in the Intel(R) TDX module for some Intel(R) platforms within Ring 0: Trust Domain may...

CVE-2026-20705MEDIUM6.8same product

Insecure storage of sensitive information in the Intel(R) TDX module for some Intel(R) platform within Ring 0:...

CVE-2026-20775MEDIUM6.8same product

Uncaught exception for some Intel(R) TDX modules within Ring 0: Trust Domain may allow a denial of service. Sy...

CVE-2023-31189MEDIUM5.2same product

Improper authentication in some Intel(R) Server Product OpenBMC firmware before version egs-1.09 may allow an ...

CVE-2023-32280MEDIUM5.3same product

Insufficiently protected credentials in some Intel(R) Server Product OpenBMC firmware before versions egs-1.05...