CVE-2026-20716

EUVD-2026-56476
Improper access control for some Intel(R) Processors within Ring 3: User Applications may allow an escalation of privilege. Simple hardware adversary with an authenticated user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present with special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (high), integrity (high) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (none) impacts.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7 HIGH
LOCAL
HIGH
LOW
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 0.41%
Affected Products (NVD)
VendorProductVersion
intelxeon_634_firmware
-
intelxeon_636_firmware
-
intelxeon_638_firmware
-
intelxeon_654_firmware
-
intelxeon_656_firmware
-
intelxeon_658x_firmware
-
intelxeon_674x_firmware
-
intelxeon_676x_firmware
-
intelxeon_678x_firmware
-
intelxeon_696x_firmware
-
intelxeon_698x_firmware
-
intelxeon_6315p_firmware
-
intelxeon_6325p_firmware
-
intelxeon_6333p_firmware
-
intelxeon_6337p_firmware
-
intelxeon_6349p_firmware
-
intelxeon_6353p_firmware
-
intelxeon_6357p_firmware
-
intelxeon_6369p_firmware
-
intelxeon_6377p_firmware
-
intelxeon_6503p_firmware
-
intelxeon_6503p-b_firmware
-
intelxeon_6505p_firmware
-
intelxeon_6507p_firmware
-
intelxeon_6511p_firmware
-
intelxeon_6513p-b_firmware
-
intelxeon_6515p_firmware
-
intelxeon_6516p-b_firmware
-
intelxeon_6517p_firmware
-
intelxeon_6518p-b_firmware
-
intelxeon_6520p_firmware
-
intelxeon_6521p_firmware
-
intelxeon_6523p-b_firmware
-
intelxeon_6527p_firmware
-
intelxeon_6530p_firmware
-
intelxeon_6532p-b_firmware
-
intelxeon_6533p-b_firmware
-
intelxeon_6543p-b_firmware
-
intelxeon_6544p-b_firmware
-
intelxeon_6546p-b_firmware
-
intelxeon_6548p-b_firmware
-
intelxeon_6553p-b_firmware
-
intelxeon_6556p-b_firmware
-
intelxeon_6563p-b_firmware
-
intelxeon_6706p-b_firmware
-
intelxeon_6710e_firmware
-
intelxeon_6714p_firmware
-
intelxeon_6716p-b_firmware
-
intelxeon_6718p-b_firmware
-
intelxeon_6724p_firmware
-
intelxeon_6725p_firmware
-
intelxeon_6726p-b_firmware
-
intelxeon_6728p_firmware
-
intelxeon_6730p_firmware
-
intelxeon_6731e_firmware
-
intelxeon_6731p_firmware
-
intelxeon_6732p_firmware
-
intelxeon_6736p_firmware
-
intelxeon_6737p_firmware
-
intelxeon_6738p_firmware
-
intelxeon_6740e_firmware
-
intelxeon_6740p_firmware
-
intelxeon_6741p_firmware
-
intelxeon_6745p_firmware
-
intelxeon_6746e_firmware
-
intelxeon_6747p_firmware
-
intelxeon_6748p_firmware
-
intelxeon_6756e_firmware
-
intelxeon_6756p-b_firmware
-
intelxeon_6760p_firmware
-
intelxeon_6761p_firmware
-
intelxeon_6766e_firmware
-
intelxeon_6766p-b_firmware
-
intelxeon_6767p_firmware
-
intelxeon_6768p_firmware
-
intelxeon_6768p-b_firmware
-
intelxeon_6774p_firmware
-
intelxeon_6776p_firmware
-
intelxeon_6776p-b_firmware
-
intelxeon_6780e_firmware
-
intelxeon_6781p_firmware
-
intelxeon_6787p_firmware
-
intelxeon_6788p_firmware
-
intelxeon_6944p_firmware
-
intelxeon_6952p_firmware
-
intelxeon_6960p_firmware
-
intelxeon_6962p_firmware
-
intelxeon_6972p_firmware
-
intelxeon_6978p_firmware
-
intelxeon_6979p_firmware
-
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
intel-microcode
bookworm
postponed
bookworm/non-free-firmware
vulnerable
bookworm/non-free-firmware (security)
vulnerable
forky/non-free-firmware
vulnerable
sid/non-free-firmware
vulnerable
trixie
postponed
trixie/non-free-firmware
vulnerable
trixie/non-free-firmware (security)
vulnerable
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
intel-microcode
bionic
needs-triage
focal
needs-triage
jammy
needs-triage
noble
needs-triage
resolute
needs-triage
trusty
needs-triage
xenial
needs-triage
Amazon Linux logo
Amazon Linux Releases
Amazon Package
Release
microcode_ctl
Amazon Linux 2
2:2.1-47.amzn2.4.28
fixed
Amazon Linux 2023
2:2.1-53.amzn2023.0.16
fixed
microcode_ctl-debuginfo
Amazon Linux 2
2:2.1-47.amzn2.4.28
fixed