CVE-2020-13799
Summary
| CVE | CVE-2020-13799 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-11-18 22:15:11 UTC |
| Updated | 2026-06-05 20:13:25 UTC |
| Description | Western Digital has identified a security vulnerability in the Replay Protected Memory Block (RPMB) protocol as specified in multiple standards for storage device interfaces, including all versions of eMMC, UFS, and NVMe. The RPMB protocol is specified by industry standards bodies and is implemented by storage devices from multiple vendors to assist host systems in securing trusted firmware. Several scenarios have been identified in which the RPMB state may be affected by an attacker without the knowledge of the trusted component that uses the RPMB feature. |
Risk And Classification
Primary CVSS: v3.1 6.8 MEDIUM from [email protected]
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS: 0.000550000 probability, percentile 0.175230000 (date 2026-06-11)
Problem Types: CWE-294 | n/a
| Version | Source | Type | Score | Severity | Vector |
|---|---|---|---|---|---|
| 3.1 | [email protected] | Primary | 6.8 | MEDIUM | CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| 2.0 | [email protected] | Primary | 4.6 | AV:L/AC:L/Au:N/C:P/I:P/A:P |
CVSS v3.1 Breakdown
Attack Vector
PhysicalAttack Complexity
LowPrivileges Required
NoneUser Interaction
NoneScope
UnchangedConfidentiality
HighIntegrity
HighAvailability
HighCVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS v2.0 Breakdown
Access Vector
LocalAccess Complexity
LowAuthentication
NoneConfidentiality
PartialIntegrity
PartialAvailability
PartialAV:L/AC:L/Au:N/C:P/I:P/A:P
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Trustedfirmware | Op-tee | All | All | All | All |
| Hardware | Westerndigital | Inand Cl Em132 | - | All | All | All |
| Operating System | Westerndigital | Inand Cl Em132 Firmware | All | All | All | All |
| Hardware | Westerndigital | Inand Ix Em132 | - | All | All | All |
| Operating System | Westerndigital | Inand Ix Em132 Firmware | All | All | All | All |
| Hardware | Westerndigital | Inand Ix Em132 Xi | - | All | All | All |
| Operating System | Westerndigital | Inand Ix Em132 Xi Firmware | All | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| WDC-20008 Replay Attack Vulnerabilities in RPMB Protocol Applications | Western Digital | af854a3a-2127-422b-91ae-364da2661108 | www.westerndigital.com | Vendor Advisory |
| VU#231329 - Replay Protected Memory Block (RPMB) protocol does not adequately defend against replay attacks | af854a3a-2127-422b-91ae-364da2661108 | www.kb.cert.org | Third Party Advisory, US Government Resource |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.