CVE-2025-35973

EUVD-2025-210692
Improper handling of values for some Intel(R) Processors within Ring 0: Kernel, Hypervisor and Bare Metal OS may allow an escalation of privilege. Authorized adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present with special internal knowledge and require no user interaction. The potential vulnerability may impact the confidentiality (low), integrity (low) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (high), integrity (high) and availability (none) impacts.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
UNKNOWN
---
Awaiting analysis
This vulnerability is currently awaiting analysis.
Base Score
CVSS 3.x
EPSS Score
Percentile: 0.86%
Debian logo
Debian Releases
Debian Product
Codename
intel-microcode
bookworm
postponed
bookworm/non-free-firmware
vulnerable
bookworm/non-free-firmware (security)
vulnerable
forky/non-free-firmware
vulnerable
sid/non-free-firmware
vulnerable
trixie
postponed
trixie/non-free-firmware
vulnerable
trixie/non-free-firmware (security)
vulnerable
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
intel-microcode
bionic
needs-triage
focal
needs-triage
jammy
needs-triage
noble
needs-triage
resolute
needs-triage
trusty
needs-triage
xenial
needs-triage
Red Hat logo
Red Hat Enterprise Linux Releases
Red Hat Product
Release
microcode
RHEL 9
4:20260210-1.20260812.1.el9_8
fixed
Amazon Linux logo
Amazon Linux Releases
Amazon Package
Release
microcode_ctl
Amazon Linux 2
2:2.1-47.amzn2.4.28
fixed
Amazon Linux 2023
2:2.1-53.amzn2023.0.16
fixed
microcode_ctl-debuginfo
Amazon Linux 2
2:2.1-47.amzn2.4.28
fixed