Improperly implemented security check for standard in Intel Xeon 6 processor with P-cores and Intel Xeon 6 processor with E-cores - CVE-2025-32086

 

Improperly implemented security check for standard in Intel Xeon 6 processor with P-cores and Intel Xeon 6 processor with E-cores - CVE-2025-32086

Published: August 18, 2025


Vulnerability identifier: #VU114195
CSH Severity: Low
CVSS v4.0: CVSS:4.0/AV:L/AC:H/AT:N/PR:H/UI:N/VC:N/VI:N/VA:N/SC:H/SI:H/SA:N/E:U/U:Clear
CVE-ID: CVE-2025-32086
CWE-ID: CWE-358
Exploitation vector: Local access
Exploit availability: No public exploit available
Vendor: Intel
Affected software:
Intel Xeon 6 processor with P-cores
Intel Xeon 6 processor with E-cores

Detailed vulnerability description

The vulnerability allows local user to escalate privileges on the system.

The vulnerability exists due to improperly implemented security check for standard in the DDRIO configuration when using Intel SGX or Intel TDX. A local administrator can gain elevated privileges on the target system.


How to mitigate CVE-2025-32086

Install updates from vendor's website.

Sources