CVE-2020-0595: Intel Active Management Technology Firmware

Critical severity, CVSS 9.8. EPSS: 3.4% chance of exploitation in the next 30 days.

Use after free in IPv6 subsystem in Intel(R) AMT and Intel(R) ISM versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow an unauthenticated user to potentially enable escalation of privilege via network access.

Affected products

  • Intel Active Management Technology Firmware: from 11.0, before 11.8.77 (fixed in 11.8.77); from 11.10, before 11.12.77 (fixed in 11.12.77); from 11.20, before 11.22.77 (fixed in 11.22.77); from 12.0, before 12.0.64 (fixed in 12.0.64)
  • Intel Service Manager: from 11.0, before 11.8.77 (fixed in 11.8.77); from 11.10, before 11.12.77 (fixed in 11.12.77); from 11.20, before 11.22.77 (fixed in 11.22.77); from 12.0, before 12.0.64 (fixed in 12.0.64)

Published 2020-06-15. Last modified 2026-06-17.