CVE-2020-13799
Western Digital has identified a security vulnerability in the Replay Protected Memory Block (RPMB) protocol as specified in multiple standards for storage device interfaces, including all versions of eMMC, UFS, and NVMe. The RPMB protocol is specified by industry standards bodies and is implemented by storage devices from multiple vendors to assist host systems in securing trusted firmware. Several scenarios have been identified in which the RPMB state may be affected by an attacker without the knowledge of the trusted component that uses the RPMB feature.
Published:Nov 18, 2020
Last Modified:Jun 5, 2026
EPS:Nov 18, 2020
EPSS Score:0.00055
CVSS Score:6.8
Affected Products
Vendor
Product
Action
Vendor
Trustedfirmware
Product
Op-tee
Trustedfirmware
Op-tee
Vendor
Westerndigital
Product
Inand Cl Em132
Westerndigital
Inand Cl Em132
Vendor
Westerndigital
Product
Inand Cl Em132 Firmware
Westerndigital
Inand Cl Em132 Firmware
Vendor
Westerndigital
Product
Inand Ix Em132
Westerndigital
Inand Ix Em132
Vendor
Westerndigital
Product
Inand Ix Em132 Firmware
Westerndigital
Inand Ix Em132 Firmware
Vendor
Westerndigital
Product
Inand Ix Em132 Xi
Westerndigital
Inand Ix Em132 Xi
Vendor
Westerndigital
Product
Inand Ix Em132 Xi Firmware
Westerndigital
Inand Ix Em132 Xi Firmware
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Related CVEs
References
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
