CVE Feed

    Dashboard / CVE / CVE-2020-13799

    CVE-2020-13799

    Western Digital has identified a security vulnerability in the Replay Protected Memory Block (RPMB) protocol as specified in multiple standards for storage device interfaces, including all versions of eMMC, UFS, and NVMe. The RPMB protocol is specified by industry standards bodies and is implemented by storage devices from multiple vendors to assist host systems in securing trusted firmware. Several scenarios have been identified in which the RPMB state may be affected by an attacker without the knowledge of the trusted component that uses the RPMB feature.

    Published:Nov 18, 2020
    Last Modified:Jun 5, 2026
    EPS:Nov 18, 2020
    EPSS Score:0.00055
    CVSS Score:6.8

    Affected Products

    Vendor
    Trustedfirmware
    Product
    Op-tee
    Vendor
    Westerndigital
    Product
    Inand Cl Em132
    Vendor
    Westerndigital
    Product
    Inand Cl Em132 Firmware
    Vendor
    Westerndigital
    Product
    Inand Ix Em132
    Vendor
    Westerndigital
    Product
    Inand Ix Em132 Firmware
    Vendor
    Westerndigital
    Product
    Inand Ix Em132 Xi
    Vendor
    Westerndigital
    Product
    Inand Ix Em132 Xi Firmware

    Exploits

    No exploit reference

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High