CVE-2025-31936

EUVD-2025-210690
Improper handling of overlap between protected memory ranges for some Intel(R) Xeon(R) 6 processors when using Intel(R) TDX within SMM may allow an escalation of privilege. SMM adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present with special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (high), integrity (high) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (none) impacts.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.7 MEDIUM
LOCAL
HIGH
HIGH
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 0.71%
Affected Products (NVD)
VendorProductVersion
intelxeon_6337p_firmware
-
intelxeon_6349p_firmware
-
intelxeon_6353p_firmware
-
intelxeon_6357p_firmware
-
intelxeon_6369p_firmware
-
intelxeon_6377p_firmware
-
intelxeon_6503p_firmware
-
intelxeon_6503p-b_firmware
-
intelxeon_6505p_firmware
-
intelxeon_6507p_firmware
-
intelxeon_6511p_firmware
-
intelxeon_6513p-b_firmware
-
intelxeon_6515p_firmware
-
intelxeon_6516p-b_firmware
-
intelxeon_6517p_firmware
-
intelxeon_6518p-b_firmware
-
intelxeon_6520p_firmware
-
intelxeon_6521p_firmware
-
intelxeon_6523p-b_firmware
-
intelxeon_6527p_firmware
-
intelxeon_6530p_firmware
-
intelxeon_6532p-b_firmware
-
intelxeon_6533p-b_firmware
-
intelxeon_6543p-b_firmware
-
intelxeon_6544p-b_firmware
-
intelxeon_6546p-b_firmware
-
intelxeon_6548p-b_firmware
-
intelxeon_6553p-b_firmware
-
intelxeon_6556p-b_firmware
-
intelxeon_6563p-b_firmware
-
intelxeon_6706p-b_firmware
-
intelxeon_6714p_firmware
-
intelxeon_6716p-b_firmware
-
intelxeon_6718p-b_firmware
-
intelxeon_6724p_firmware
-
intelxeon_6725p_firmware
-
intelxeon_6726p-b_firmware
-
intelxeon_6728p_firmware
-
intelxeon_6730p_firmware
-
intelxeon_6731p_firmware
-
intelxeon_6732p_firmware
-
intelxeon_6736p_firmware
-
intelxeon_6737p_firmware
-
intelxeon_6738p_firmware
-
intelxeon_6740p_firmware
-
intelxeon_6741p_firmware
-
intelxeon_6745p_firmware
-
intelxeon_6747p_firmware
-
intelxeon_6748p_firmware
-
intelxeon_6756p-b_firmware
-
intelxeon_6760p_firmware
-
intelxeon_6761p_firmware
-
intelxeon_6766p-b_firmware
-
intelxeon_6767p_firmware
-
intelxeon_6768p_firmware
-
intelxeon_6768p-b_firmware
-
intelxeon_6774p_firmware
-
intelxeon_6776p_firmware
-
intelxeon_6776p-b_firmware
-
intelxeon_6781p_firmware
-
intelxeon_6787p_firmware
-
intelxeon_6788p_firmware
-
intelxeon_6944p_firmware
-
intelxeon_6952p_firmware
-
intelxeon_6960p_firmware
-
intelxeon_6962p_firmware
-
intelxeon_6972p_firmware
-
intelxeon_6978p_firmware
-
intelxeon_6979p_firmware
-
intelxeon_6980p_firmware
-
intelxeon_6315p_firmware
-
intelxeon_6325p_firmware
-
intelxeon_6333p_firmware
-
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
intel-microcode
bookworm
postponed
bookworm/non-free-firmware
vulnerable
bookworm/non-free-firmware (security)
vulnerable
forky/non-free-firmware
vulnerable
sid/non-free-firmware
vulnerable
trixie
postponed
trixie/non-free-firmware
vulnerable
trixie/non-free-firmware (security)
vulnerable
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
intel-microcode
bionic
needs-triage
focal
needs-triage
jammy
needs-triage
noble
needs-triage
resolute
needs-triage
trusty
needs-triage
xenial
needs-triage
Red Hat logo
Red Hat Enterprise Linux Releases
Red Hat Product
Release
microcode
RHEL 9
4:20260210-1.20260812.1.el9_8
fixed
Amazon Linux logo
Amazon Linux Releases
Amazon Package
Release
microcode_ctl
Amazon Linux 2
2:2.1-47.amzn2.4.28
fixed
Amazon Linux 2023
2:2.1-53.amzn2023.0.16
fixed
microcode_ctl-debuginfo
Amazon Linux 2
2:2.1-47.amzn2.4.28
fixed