Improperly implemented security check for standard in Intel Xeon 6 processor with P-cores and Intel Xeon 6 processor with E-cores - CVE-2025-32086

 

Improperly implemented security check for standard in Intel Xeon 6 processor with P-cores and Intel Xeon 6 processor with E-cores - CVE-2025-32086

Published: August 18, 2025


Vulnerability identifier: #VU114195
CSH Severity: Low
CVSS v4: 4.5 [CVSS:4.0/AV:L/AC:H/AT:N/PR:H/UI:N/VC:N/VI:N/VA:N/SC:H/SI:H/SA:N]
CVE-ID: CVE-2025-32086
CWE-ID: CWE-358
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows local user to escalate privileges on the system.

The vulnerability exists due to improperly implemented security check for standard in the DDRIO configuration when using Intel SGX or Intel TDX. A local administrator can gain elevated privileges on the target system.


Affected software

Intel Xeon 6 processor with P-cores
Intel Xeon 6 processor with E-cores

How to mitigate CVE-2025-32086

Install updates from vendor's website.


External References

Related Security Bulletins