Hardware allows activation of test or debug logic at runtime for some Intel(R) processors which may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
CVSS Details
- CVSS 3.1 Base Score: 6.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade intel-ucode | Aug 22, 2024 | Nov 17, 2021 |
| Amazon Linux Ami 2 | — | Upgrade microcode_ctlUpgrade microcode_ctl-debuginfo | Jul 4, 2022 | Nov 17, 2021 |
| Gentoo Linux | — | Upgrade sys-firmware/intel-microcode. | Feb 21, 2024 | Nov 17, 2021 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Nov 17, 2021 |
| Suse | — | Upgrade ucode-intel | Feb 19, 2022 | Nov 17, 2021 |
| Ubuntu | — | Upgrade intel-microcodeUpgrade intel-microcode (Ubuntu Pro) | Mar 22, 2023 | Nov 17, 2021 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub