Improper access control in the EDECCSSA user leaf function for some Intel(R) Processors with Intel(R) SGX may allow an authenticated user to potentially enable denial of service via local access.
CVSS Details
- CVSS 4.0 Base Score: 6.8 (MEDIUM)
- CVSS 4.0 Vector: (CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X)
- CVSS 3.1 Base Score: 6.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade intel-ucode | Aug 8, 2025 | Feb 12, 2025 |
| Debian | — | Upgrade intel-microcode | Mar 17, 2025 | Feb 12, 2025 |
| Dell Poweredge Dsa2025041 | — | Upgrade Dell PowerEdge to the latest version | Oct 23, 2025 | Feb 11, 2025 |
| Freebsd | — | Upgrade cpu-microcode-intel | Feb 13, 2025 | Feb 12, 2025 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Feb 12, 2025 |
| Suse | — | Upgrade ucode-intelUpgrade microcode_ctl | Dec 5, 2025 | Feb 18, 2025 |
| Ubuntu | — | Upgrade intel-microcode (Ubuntu Pro)Upgrade intel-microcode | Feb 20, 2025 | Feb 12, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub