CVE-2020-24512: Debian Linux

Low severity, CVSS 3.3. EPSS: 0.4% chance of exploitation in the next 30 days.

Observable timing discrepancy in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.

Affected products

  • Debian Debian Linux: version 10.0 only
  • Intel Microcode: before 20210608 (fixed in 20210608)
  • Netapp Fas/aff BIOS: affected versions not specified
  • Netapp Hci Compute Node BIOS: affected versions not specified
  • Netapp Solidfire BIOS: affected versions not specified

Published 2021-06-09. Last modified 2026-10-08.