CVE-2025-31648
published 2026-02-10CVE-2025-31648: Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege. Startup code and smm adversary with…
PriorityP412low3.9CVSS 3.1
AVLACHPRHUINSCCLILAN
EPSS
0.13%
3.2th percentile
Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present with special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (low), integrity (low) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (low), integrity (low) and availability (none) impacts.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | intel-microcode | < intel-microcode 3.20260210.1 (forky) | intel-microcode 3.20260210.1 (forky) |
CVSS provenance
nvdv3.13.9LOWCVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:N
nvdv4.01.8LOWCVSS:4.0/AV:L/AC:H/AT:P/PR:H/UI:N/VC:L/VI:L/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
osv1.8LOW
vendor_debian1.8LOW
vendor_redhat1.8LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-cf43-7r7r-9f4f: Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege
ghsa_unreviewed·2026-02-10
CVE-2025-31648 [LOW] CWE-229 GHSA-cf43-7r7r-9f4f: Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege
Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present with special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (low), integrity (low) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (low), integrity (low) and availability (none) impacts.
OSV
CVE-2025-31648: Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege
osv·2026-02-10·CVSS 1.8
CVE-2025-31648 [LOW] CVE-2025-31648: Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege
Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present with special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (low), integrity (low) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (low), integrity (low) and availability (none) impacts.
Ubuntu
Intel Microcode vulnerability
vendor_ubuntu·2026-03-03
CVE-2025-31648 Intel Microcode vulnerability
Title: Intel Microcode vulnerability
Summary: The system could be made to run programs as an administrator.
Sergiu Ghetie discovered that some Intel® processors did not properly
handle values in the microcode flow. A local authenticated user could
potentially use this issue to escalate their privileges.
Instructions: After a standard system update you need to reboot your computer to make
all the necessary changes.
Red Hat
microcode_ctl: From CVEorg collector
vendor_redhat·2026-02-10·CVSS 1.8
CVE-2025-31648 [LOW] CWE-229 microcode_ctl: From CVEorg collector
microcode_ctl: From CVEorg collector
Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present with special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (low), integrity (low) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (low), integrity (low) and availability (none) impacts.
Package: microcode_ctl (Red Hat Enterprise Linux 10) - Fix deferred
Package: microcode_ctl (Red Hat Enterprise Linux 6)
Debian
CVE-2025-31648: intel-microcode - Improper handling of values in the microcode flow for some Intel(R) Processor Fa...
vendor_debian·2025·CVSS 1.8
CVE-2025-31648 [LOW] CVE-2025-31648: intel-microcode - Improper handling of values in the microcode flow for some Intel(R) Processor Fa...
Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present with special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (low), integrity (low) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (low), integrity (low) and availability (none) impacts.
Scope: local
bookworm: open
bullseye: open
forky: resolved (fixed in 3.20260210.1)
sid: resolved (fixed in 3.20260210.1)
trixie: open
No detection rules found.
No public exploits indexed.
Wiz
CVE-2025-31648 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 1.8
CVE-2025-31648 [LOW] CVE-2025-31648 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-31648 :
Linux Debian vulnerability analysis and mitigation
Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present with special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (low), integrity (low) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (low), integrity (low) and availability (none) impacts.
Source : NVD
## 1.8
Score
Published February 10, 2026
Severity LOW
CNA Score 1
Bugzilla
CVE-2025-31648 microcode_ctl: From CVEorg collector
bugzilla·2026-02-10·CVSS 3.9
CVE-2025-31648 [LOW] CVE-2025-31648 microcode_ctl: From CVEorg collector
CVE-2025-31648 microcode_ctl: From CVEorg collector
Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present with special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (low), integrity (low) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (low), integrity (low) and availability (none) impacts.
2026-02-10
Published