CVE-2025-20109

Improper Isolation or Compartmentalization in the stream cache mechanism for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege via local access.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.8 HIGH
LOCAL
HIGH
LOW
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
intelCNA
7.8 HIGH
LOCAL
HIGH
LOW
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
CISA-ADPADP
---
---
Awaiting analysis
This vulnerability is currently awaiting analysis.
Base Score
CVSS 3.x
EPSS Score
Percentile: Unknown
Debian logo
Debian Releases
Debian Product
Codename
intel-microcode
bullseye/non-free
vulnerable
bullseye/non-free (security)
vulnerable
bookworm/non-free-firmware
vulnerable
bookworm/non-free-firmware (security)
vulnerable
forky/non-free-firmware
vulnerable
sid/non-free-firmware
vulnerable
trixie/non-free-firmware
vulnerable
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
intel-microcode
plucky
needs-triage
noble
needs-triage
jammy
needs-triage
focal
needs-triage
bionic
needs-triage
xenial
needs-triage
trusty
needs-triage