Debian Intel-Microcode vulnerabilities
90 known vulnerabilities affecting debian/intel-microcode.
Total CVEs
90
CISA KEV
0
Public exploits
2
Exploited in wild
1
Severity breakdown
HIGH21MEDIUM66LOW3
Vulnerabilities
Page 1 of 5
CVE-2018-3639P1MEDIUMCVSS 5.5ExploitedPoCRansomwarefixed in intel-microcode 3.20180703.1 (bookworm)2018
CVE-2018-3639 [MEDIUM] CVE-2018-3639: intel-microcode - Systems with microprocessors utilizing speculative execution and speculative exe...
Systems with microprocessors utilizing speculative execution and speculative execution of memory reads before the addresses of all prior memory writes are known may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis, aka Speculative Store Bypass (SSB), Variant 4.
Scope: local
bookworm: resolved (fix
debian
CVE-2017-5715P2MEDIUMCVSS 5.6PoCfixed in amd64-microcode 3.20180515.1 (bookworm)2017
CVE-2017-5715 [MEDIUM] CVE-2017-5715: amd64-microcode - Systems with microprocessors utilizing speculative execution and indirect branch...
Systems with microprocessors utilizing speculative execution and indirect branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.
Scope: local
bookworm: resolved (fixed in 3.20180515.1)
bullseye: resolved (fixed in 3.20180515.1)
forky: resolved (fixed in 3.20180515.1)
sid: resolved
debian
CVE-2024-23918P3HIGHCVSS 8.8fixed in intel-microcode 3.20241112.1~deb12u1 (bookworm)2024
CVE-2024-23918 [HIGH] CVE-2024-23918: intel-microcode - Improper conditions check in some Intel(R) Xeon(R) processor memory controller c...
Improper conditions check in some Intel(R) Xeon(R) processor memory controller configurations when using Intel(R) SGX may allow a privileged user to potentially enable escalation of privilege via local access.
Scope: local
bookworm: resolved (fixed in 3.20241112.1~deb12u1)
bullseye: resolved (fixed in 3.20241112.1~deb11u1)
forky: resolved (fixed in 3.2024111
debian
CVE-2023-23583P3HIGHCVSS 8.8fixed in intel-microcode 3.20231114.1~deb12u1 (bookworm)2023
CVE-2023-23583 [HIGH] CVE-2023-23583: intel-microcode - Sequence of processor instructions leads to unexpected behavior for some Intel(R...
Sequence of processor instructions leads to unexpected behavior for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege and/or information disclosure and/or denial of service via local access.
Scope: local
bookworm: resolved (fixed in 3.20231114.1~deb12u1)
bullseye: resolved (fixed in 3.20231114.1~deb11u1)
f
debian
CVE-2018-3615P3MEDIUMCVSS 6.4fixed in intel-microcode 3.20180703.1 (bookworm)2018
CVE-2018-3615 [MEDIUM] CVE-2018-3615: intel-microcode - Systems with microprocessors utilizing speculative execution and Intel software ...
Systems with microprocessors utilizing speculative execution and Intel software guard extensions (Intel SGX) may allow unauthorized disclosure of information residing in the L1 data cache from an enclave to an attacker with local user access via a side-channel analysis.
Scope: local
bookworm: resolved (fixed in 3.20180703.1)
bullseye: resolved (fixed in 3.20
debian
CVE-2020-24489P3HIGHCVSS 8.8fixed in intel-microcode 3.20210608.1 (bookworm)2020
CVE-2020-24489 [HIGH] CVE-2020-24489: intel-microcode - Incomplete cleanup in some Intel(R) VT-d products may allow an authenticated use...
Incomplete cleanup in some Intel(R) VT-d products may allow an authenticated user to potentially enable escalation of privilege via local access.
Scope: local
bookworm: resolved (fixed in 3.20210608.1)
bullseye: resolved (fixed in 3.20210608.1)
forky: resolved (fixed in 3.20210608.1)
sid: resolved (fixed in 3.20210608.1)
trixie: resolved (fixed in 3.20210608
debian
CVE-2025-20109P3HIGHCVSS 7.3fixed in intel-microcode 3.20250812.1~deb12u1 (bookworm)2025
CVE-2025-20109 [HIGH] CVE-2025-20109: intel-microcode - Improper Isolation or Compartmentalization in the stream cache mechanism for som...
Improper Isolation or Compartmentalization in the stream cache mechanism for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege via local access.
Scope: local
bookworm: resolved (fixed in 3.20250812.1~deb12u1)
bullseye: resolved (fixed in 3.20250812.1~deb11u1)
forky: resolved (fixed in 3.20250812.1)
sid: re
debian
CVE-2023-49141P3HIGHCVSS 7.3fixed in intel-microcode 3.20240514.1~deb12u1 (bookworm)2023
CVE-2023-49141 [HIGH] CVE-2023-49141: intel-microcode - Improper isolation in some Intel(R) Processors stream cache mechanism may allow ...
Improper isolation in some Intel(R) Processors stream cache mechanism may allow an authenticated user to potentially enable escalation of privilege via local access.
Scope: local
bookworm: resolved (fixed in 3.20240514.1~deb12u1)
bullseye: resolved (fixed in 3.20240514.1~deb11u1)
forky: resolved (fixed in 3.20240514.1)
sid: resolved (fixed in 3.20240514.1)
t
debian
CVE-2023-42667P3HIGHCVSS 7.3fixed in intel-microcode 3.20240813.1~deb12u1 (bookworm)2023
CVE-2023-42667 [HIGH] CVE-2023-42667: intel-microcode - Improper isolation in the Intel(R) Core(TM) Ultra Processor stream cache mechani...
Improper isolation in the Intel(R) Core(TM) Ultra Processor stream cache mechanism may allow an authenticated user to potentially enable escalation of privilege via local access.
Scope: local
bookworm: resolved (fixed in 3.20240813.1~deb12u1)
bullseye: resolved (fixed in 3.20240813.1~deb11u1)
forky: resolved (fixed in 3.20240813.1)
sid: resolved (fixed in 3.
debian
CVE-2018-3646P3MEDIUMCVSS 5.6fixed in intel-microcode 3.20180703.1 (bookworm)2018
CVE-2018-3646 [MEDIUM] CVE-2018-3646: intel-microcode - Systems with microprocessors utilizing speculative execution and address transla...
Systems with microprocessors utilizing speculative execution and address translations may allow unauthorized disclosure of information residing in the L1 data cache to an attacker with local user access with guest OS privilege via a terminal page fault and a side-channel analysis.
Scope: local
bookworm: resolved (fixed in 3.20180703.1)
bullseye: resolved (fi
debian
CVE-2023-43758P3HIGHCVSS 8.7fixed in intel-microcode 3.20250211.1~deb12u1 (bookworm)2023
CVE-2023-43758 [HIGH] CVE-2023-43758: intel-microcode - Improper input validation in UEFI firmware for some Intel(R) processors may allo...
Improper input validation in UEFI firmware for some Intel(R) processors may allow a privileged user to potentially enable escalation of privilege via local access.
Scope: local
bookworm: resolved (fixed in 3.20250211.1~deb12u1)
bullseye: resolved (fixed in 3.20250211.1~deb11u1)
forky: resolved (fixed in 3.20250211.1)
sid: resolved (fixed in 3.20250211.1)
tri
debian
CVE-2023-45745P3HIGHCVSS 7.9fixed in intel-microcode 3.20240514.1~deb12u1 (bookworm)2023
CVE-2023-45745 [HIGH] CVE-2023-45745: intel-microcode - Improper input validation in some Intel(R) TDX module software before version 1....
Improper input validation in some Intel(R) TDX module software before version 1.5.05.46.698 may allow a privileged user to potentially enable escalation of privilege via local access.
Scope: local
bookworm: resolved (fixed in 3.20240514.1~deb12u1)
bullseye: resolved (fixed in 3.20240514.1~deb11u1)
forky: resolved (fixed in 3.20240514.1)
sid: resolved (fixed
debian
CVE-2025-22889P3HIGHCVSS 7.0fixed in intel-microcode 3.20250812.1~deb12u1 (bookworm)2025
CVE-2025-22889 [HIGH] CVE-2025-22889: intel-microcode - Improper handling of overlap between protected memory ranges for some Intel(R) X...
Improper handling of overlap between protected memory ranges for some Intel(R) Xeon(R) 6 processor with Intel(R) TDX may allow a privileged user to potentially enable escalation of privilege via local access.
Scope: local
bookworm: resolved (fixed in 3.20250812.1~deb12u1)
bullseye: resolved (fixed in 3.20250812.1~deb11u1)
forky: resolved (fixed in 3.20250812
debian
CVE-2025-22839P3HIGHCVSS 7.3fixed in intel-microcode 3.20250812.1~deb12u1 (bookworm)2025
CVE-2025-22839 [HIGH] CVE-2025-22839: intel-microcode - Insufficient granularity of access control in the OOB-MSM for some Intel(R) Xeon...
Insufficient granularity of access control in the OOB-MSM for some Intel(R) Xeon(R) 6 Scalable processors may allow a privileged user to potentially enable escalation of privilege via adjacent access.
Scope: local
bookworm: resolved (fixed in 3.20250812.1~deb12u1)
bullseye: resolved (fixed in 3.20250812.1~deb11u1)
forky: resolved (fixed in 3.20250812.1)
sid:
debian
CVE-2024-29214P4HIGHCVSS 8.7fixed in intel-microcode 3.20250211.1~deb12u1 (bookworm)2024
CVE-2024-29214 [HIGH] CVE-2024-29214: intel-microcode - Improper input validation in UEFI firmware CseVariableStorageSmm for some Intel(...
Improper input validation in UEFI firmware CseVariableStorageSmm for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
Scope: local
bookworm: resolved (fixed in 3.20250211.1~deb12u1)
bullseye: resolved (fixed in 3.20250211.1~deb11u1)
forky: resolved (fixed in 3.20250211.1)
sid: resolved (fixe
debian
CVE-2024-28127P4HIGHCVSS 8.7fixed in intel-microcode 3.20250211.1~deb12u1 (bookworm)2024
CVE-2024-28127 [HIGH] CVE-2024-28127: intel-microcode - Improper input validation in UEFI firmware for some Intel(R) Processors may allo...
Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
Scope: local
bookworm: resolved (fixed in 3.20250211.1~deb12u1)
bullseye: resolved (fixed in 3.20250211.1~deb11u1)
forky: resolved (fixed in 3.20250211.1)
sid: resolved (fixed in 3.20250211.1)
tri
debian
CVE-2023-34440P4HIGHCVSS 8.7fixed in intel-microcode 3.20250211.1~deb12u1 (bookworm)2023
CVE-2023-34440 [HIGH] CVE-2023-34440: intel-microcode - Improper input validation in UEFI firmware for some Intel(R) Processors may allo...
Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
Scope: local
bookworm: resolved (fixed in 3.20250211.1~deb12u1)
bullseye: resolved (fixed in 3.20250211.1~deb11u1)
forky: resolved (fixed in 3.20250211.1)
sid: resolved (fixed in 3.20250211.1)
tri
debian
CVE-2025-20053P4HIGHCVSS 7.0fixed in intel-microcode 3.20250812.1~deb12u1 (bookworm)2025
CVE-2025-20053 [HIGH] CVE-2025-20053: intel-microcode - Improper buffer restrictions for some Intel(R) Xeon(R) Processor firmware with S...
Improper buffer restrictions for some Intel(R) Xeon(R) Processor firmware with SGX enabled may allow a privileged user to potentially enable escalation of privilege via local access.
Scope: local
bookworm: resolved (fixed in 3.20250812.1~deb12u1)
bullseye: resolved (fixed in 3.20250812.1~deb11u1)
forky: resolved (fixed in 3.20250812.1)
sid: resolved (fixed i
debian
CVE-2025-26403P4MEDIUMCVSS 4.5fixed in intel-microcode 3.20250812.1~deb12u1 (bookworm)2025
CVE-2025-26403 [MEDIUM] CVE-2025-26403: intel-microcode - Out-of-bounds write in the memory subsystem for some Intel(R) Xeon(R) 6 processo...
Out-of-bounds write in the memory subsystem for some Intel(R) Xeon(R) 6 processors when using Intel(R) SGX or Intel(R) TDX may allow a privileged user to potentially enable escalation of privilege via local access.
Scope: local
bookworm: resolved (fixed in 3.20250812.1~deb12u1)
bullseye: resolved (fixed in 3.20250812.1~deb11u1)
forky: resolved (fixed in 3.
debian
CVE-2024-24582P4HIGHCVSS 8.7fixed in intel-microcode 3.20250211.1~deb12u1 (bookworm)2024
CVE-2024-24582 [HIGH] CVE-2024-24582: intel-microcode - Improper input validation in XmlCli feature for UEFI firmware for some Intel(R) ...
Improper input validation in XmlCli feature for UEFI firmware for some Intel(R) processors may allow privileged user to potentially enable escalation of privilege via local access.
Scope: local
bookworm: resolved (fixed in 3.20250211.1~deb12u1)
bullseye: resolved (fixed in 3.20250211.1~deb11u1)
forky: resolved (fixed in 3.20250211.1)
sid: resolved (fixed in
debian
1 / 5Next →