Known vulnerabilities in intel-microcode (Debian package)

Vendor: Debian
Software CPE: cpe:2.3:o:debian:intel-microcode_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 24
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting intel-microcode (Debian package) intel-microcode (Debian package) is affected by 24 known vulnerabilities: 1 high, 1 medium, 22 low Critical High Medium Low

Vulnerabilities (24)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU109427 - Uncaught Exception
CVE-2025-20054
CWE-248 Low
No
No
3.20250512.1~deb12u1 19.05.2025 SB2025051949
SB2025051953
SB2025051954
and 10 more
#VU109426 - Resource Management Errors
CVE-2025-20103
CWE-399 Low
No
No
3.20250512.1~deb12u1 19.05.2025 SB2025051949
SB2025051953
SB2025051954
and 9 more
#VU109425 - Exposure of sensitive information to an unauthorized actor
CVE-2024-45332
CWE-200 Low
No
No
3.20250512.1~deb12u1 19.05.2025 SB2025051947
SB2025051953
SB2025051954
and 12 more
#VU109424 - Exposure of sensitive information to an unauthorized actor
CVE-2025-20623
CWE-200 Low
No
No
3.20250512.1~deb12u1 19.05.2025 SB2025051947
SB2025051953
SB2025051954
and 10 more
#VU109423 - Exposure of sensitive information to an unauthorized actor
CVE-2024-43420
CWE-200 Low
No
No
3.20250512.1~deb12u1 19.05.2025 SB2025051947
SB2025051953
SB2025051954
and 11 more
#VU109171 - Incorrect Behavior Order
CVE-2025-20012
CWE-696 Low
No
No
3.20250512.1~deb12u1 14.05.2025 SB2025051436
SB2025051953
SB2025051954
and 14 more
#VU109169 - Missing initialization of resource
CVE-2025-24495
CWE-909 Low
No
No
3.20250512.1~deb12u1 14.05.2025 SB2025051436
SB2025051953
SB2025051954
and 13 more
#VU109000 - Resource Management Errors
CVE-2024-28956
CWE-399 High
No
No
3.20250512.1~deb12u1 13.05.2025 SB2025051308
SB2025051309
SB2025051320
and 46 more
#VU82351 - Sequence of Processor Instructions Leads to Unexpected Behavior
CVE-2023-23583
CWE-1281 Low
No
No
3.20231114.1~deb11u1, 3.20231114.1~deb12u1 24.10.2023 SB2023102457
SB2023111435
SB2023111436
and 34 more
#VU79378 - Unauthorized Error Injection Can Degrade Hardware Redundancy
CVE-2022-41804
CWE-1334 Low
No
No
3.20230808.1~deb11u1, 3.20230808.1~deb12u1 11.08.2023 SB2023081104
SB2023081150
SB2023081203
and 17 more
#VU79377 - Improper Access Control
CVE-2023-23908
CWE-284 Low
No
No
3.20230808.1~deb11u1, 3.20230808.1~deb12u1 11.08.2023 SB2023081103
SB2023081150
SB2023081203
and 21 more
#VU79262 - Information Exposure through Microarchitectural State after Transient Execution
CVE-2022-40982
CWE-1342 Medium
No
No
3.20230808.1~deb11u1, 3.20230808.1~deb12u1 08.08.2023 SB20230808144
SB2023081009
SB2023081143
and 113 more
#VU64376 - Incomplete cleanup
CVE-2022-21127
CWE-459 Low
No
No
3.20220510.1~deb10u1, 3.20220510.1~deb11u1 14.06.2022 SB2022061463
SB2022061464
SB2022061630
and 36 more
#VU64364 - Exposure of sensitive information to an unauthorized actor
CVE-2022-21123
CWE-200 Low
No
No
3.20220510.1~deb10u1, 3.20220510.1~deb11u1 14.06.2022 SB2022061454
SB2022061465
SB2022061463
and 97 more
#VU64365 - Exposure of sensitive information to an unauthorized actor
CVE-2022-21125
CWE-200 Low
No
No
3.20220510.1~deb10u1, 3.20220510.1~deb11u1 14.06.2022 SB2022061454
SB2022061467
SB2022061463
and 96 more
#VU64366 - Exposure of sensitive information to an unauthorized actor
CVE-2022-21166
CWE-200 Low
No
No
3.20220510.1~deb10u1, 3.20220510.1~deb11u1 14.06.2022 SB2022061454
SB2022061466
SB2022061463
and 102 more
#VU63348 - Exposure of sensitive information to an unauthorized actor
CVE-2022-21151
CWE-200 Low
No
No
3.20220510.1~deb10u1, 3.20220510.1~deb11u1 17.05.2022 SB2022051744
SB2022061204
SB2022062041
and 12 more
#VU54220 - Exposure of sensitive information to an unauthorized actor
CVE-2020-24513
CWE-200 Low
No
No
3.20210608.2~deb10u1 18.06.2021 SB2021061807
SB2021061808
SB2021062119
and 22 more
#VU54204 - Observable discrepancy
CVE-2020-24512
CWE-203 Low
No
No
3.20210608.2~deb10u1 17.06.2021 SB2021061716
SB2021061808
SB2021062119
and 35 more
#VU54203 - Exposure of sensitive information to an unauthorized actor
CVE-2020-24511
CWE-200 Low
No
No
3.20210608.2~deb10u1 17.06.2021 SB2021061716
SB2021061808
SB2021062119
and 35 more


Showing elements 1 - 20 out of 24