CVE-2020-24509: Intel Server Platform Services

Medium severity, CVSS 6.7. EPSS: 0.3% chance of exploitation in the next 30 days.

Insufficient control flow management in subsystem in Intel(R) SPS versions before SPS_E3_05.01.04.300.0, SPS_SoC-A_05.00.03.091.0, SPS_E5_04.04.04.023.0, or SPS_E5_04.04.03.263.0 may allow a privileged user to potentially enable escalation of privilege via local access.

Affected products

  • Intel Server Platform Services: before sps_soc-a_05.00.03.091.0 (fixed in sps_soc-a_05.00.03.091.0); version sps_e3_05.01.04.300.0 only; version sps_e5_04.04.03.263.0 only; version sps_e5_04.04.04.023.0 only

Published 2021-06-09. Last modified 2026-06-17.