CVE-2025-20623 — Exposure of Sensitive Information caused by Shared Microarchitectural Predictor State that Influences Transient Execution in Intel-microcode
Severity
5.7MEDIUMNVD
EPSS
0.1%
top 73.39%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 13
Latest updateMay 27
Description
Exposure of sensitive information caused by shared microarchitectural predictor state that influences transient execution for some Intel(R) Core™ processors (10th Generation) may allow an authenticated user to potentially enable information disclosure via local access.
CVSS vector
CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
Affected Packages1 packages
🔴Vulnerability Details
3GHSA▶
GHSA-fv2p-m3fq-rq6h: Exposure of sensitive information caused by shared microarchitectural predictor state that influences transient execution for some Intel(R) Core™ proc↗2025-05-13
OSV▶
CVE-2025-20623: Exposure of sensitive information caused by shared microarchitectural predictor state that influences transient execution for some Intel(R) Core™ proc↗2025-05-13