Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 10

Количество 10

github логотип

GHSA-cf43-7r7r-9f4f

4 месяца назад

Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present with special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (low), integrity (low) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (low), integrity (low) and availability (none) impacts.

CVSS3: 3.9
EPSS: Низкий
ubuntu логотип

CVE-2025-31648

4 месяца назад

Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present with special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (low), integrity (low) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (low), integrity (low) and availability (none) impacts.

CVSS3: 3.9
EPSS: Низкий
redhat логотип

CVE-2025-31648

4 месяца назад

Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present with special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (low), integrity (low) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (low), integrity (low) and availability (none) impacts.

CVSS3: 2.5
EPSS: Низкий
nvd логотип

CVE-2025-31648

4 месяца назад

Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present with special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (low), integrity (low) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (low), integrity (low) and availability (none) impacts.

CVSS3: 3.9
EPSS: Низкий
debian логотип

CVE-2025-31648

4 месяца назад

Improper handling of values in the microcode flow for some Intel(R) Pr ...

CVSS3: 3.9
EPSS: Низкий
fstec логотип

BDU:2026-01872

4 месяца назад

Уязвимость микропрограммного обеспечения процессоров Intel, связанная с неправильной обработкой значений, позволяющая нарушителю повысить свои привилегии

CVSS3: 3.9
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20401-1

3 месяца назад

Security update for ucode-intel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0670-1

4 месяца назад

Security update for ucode-intel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0669-1

4 месяца назад

Security update for ucode-intel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0668-1

4 месяца назад

Security update for ucode-intel

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-cf43-7r7r-9f4f

Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present with special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (low), integrity (low) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (low), integrity (low) and availability (none) impacts.

CVSS3: 3.9
0%
Низкий
4 месяца назад
ubuntu логотип
CVE-2025-31648

Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present with special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (low), integrity (low) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (low), integrity (low) and availability (none) impacts.

CVSS3: 3.9
0%
Низкий
4 месяца назад
redhat логотип
CVE-2025-31648

Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present with special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (low), integrity (low) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (low), integrity (low) and availability (none) impacts.

CVSS3: 2.5
0%
Низкий
4 месяца назад
nvd логотип
CVE-2025-31648

Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present with special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (low), integrity (low) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (low), integrity (low) and availability (none) impacts.

CVSS3: 3.9
0%
Низкий
4 месяца назад
debian логотип
CVE-2025-31648

Improper handling of values in the microcode flow for some Intel(R) Pr ...

CVSS3: 3.9
0%
Низкий
4 месяца назад
fstec логотип
BDU:2026-01872

Уязвимость микропрограммного обеспечения процессоров Intel, связанная с неправильной обработкой значений, позволяющая нарушителю повысить свои привилегии

CVSS3: 3.9
0%
Низкий
4 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:20401-1

Security update for ucode-intel

3 месяца назад
suse-cvrf логотип
SUSE-SU-2026:0670-1

Security update for ucode-intel

4 месяца назад
suse-cvrf логотип
SUSE-SU-2026:0669-1

Security update for ucode-intel

4 месяца назад
suse-cvrf логотип
SUSE-SU-2026:0668-1

Security update for ucode-intel

4 месяца назад

Уязвимостей на страницу