Improperly implemented security check for standard in Intel Xeon 6 processor with P-cores and Intel Xeon 6 processor with E-cores - CVE-2025-32086
Published: August 18, 2025
Vulnerability identifier: #VU114195
CSH Severity: Low
CVSS v4: 4.5 [CVSS:4.0/AV:L/AC:H/AT:N/PR:H/UI:N/VC:N/VI:N/VA:N/SC:H/SI:H/SA:N]
CVE-ID: CVE-2025-32086
CWE-ID: CWE-358
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows local user to escalate privileges on the system.
The vulnerability exists due to improperly implemented security check for standard in the DDRIO configuration when using Intel SGX or Intel TDX. A local administrator can gain elevated privileges on the target system.
Affected software
Intel Xeon 6 processor with P-cores
Intel Xeon 6 processor with E-cores
Intel Xeon 6 processor with E-cores
How to mitigate CVE-2025-32086
Install updates from vendor's website.