Debian Intel-Microcode vulnerabilities
90 known vulnerabilities affecting debian/intel-microcode.
Total CVEs
90
CISA KEV
0
Public exploits
2
Exploited in wild
1
Severity breakdown
HIGH21MEDIUM66LOW3
Vulnerabilities
Page 2 of 5
CVE-2024-24582HIGHCVSS 8.7fixed in intel-microcode 3.20250211.1~deb12u1 (bookworm)2024
CVE-2024-24582 [HIGH] CVE-2024-24582: intel-microcode - Improper input validation in XmlCli feature for UEFI firmware for some Intel(R) ...
Improper input validation in XmlCli feature for UEFI firmware for some Intel(R) processors may allow privileged user to potentially enable escalation of privilege via local access.
Scope: local
bookworm: resolved (fixed in 3.20250211.1~deb12u1)
bullseye: resolved (fixed in 3.20250211.1~deb11u1)
forky: resolved (fixed in 3.20250211.1)
sid: resolved (fixed in
debian
CVE-2024-36293MEDIUMCVSS 6.8fixed in intel-microcode 3.20250211.1~deb12u1 (bookworm)2024
CVE-2024-36293 [MEDIUM] CVE-2024-36293: intel-microcode - Improper access control in the EDECCSSA user leaf function for some Intel(R) Pro...
Improper access control in the EDECCSSA user leaf function for some Intel(R) Processors with Intel(R) SGX may allow an authenticated user to potentially enable denial of service via local access.
Scope: local
bookworm: resolved (fixed in 3.20250211.1~deb12u1)
bullseye: resolved (fixed in 3.20250211.1~deb11u1)
forky: resolved (fixed in 3.20250211.1)
sid: re
debian
CVE-2024-21853MEDIUMCVSS 5.7fixed in intel-microcode 3.20241112.1~deb12u1 (bookworm)2024
CVE-2024-21853 [MEDIUM] CVE-2024-21853: intel-microcode - Improper finite state machines (FSMs) in the hardware logic in some 4th and 5th ...
Improper finite state machines (FSMs) in the hardware logic in some 4th and 5th Generation Intel(R) Xeon(R) Processors may allow an authorized user to potentially enable denial of service via local access.
Scope: local
bookworm: resolved (fixed in 3.20241112.1~deb12u1)
bullseye: resolved (fixed in 3.20241112.1~deb11u1)
forky: resolved (fixed in 3.20241112.
debian
CVE-2024-24980MEDIUMCVSS 6.9fixed in intel-microcode 3.20240813.1~deb12u1 (bookworm)2024
CVE-2024-24980 [MEDIUM] CVE-2024-24980: intel-microcode - Protection mechanism failure in some 3rd, 4th, and 5th Generation Intel(R) Xeon(...
Protection mechanism failure in some 3rd, 4th, and 5th Generation Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
Scope: local
bookworm: resolved (fixed in 3.20240813.1~deb12u1)
bullseye: resolved (fixed in 3.20240813.1~deb11u1)
forky: resolved (fixed in 3.20240813.1)
sid: resolved (fi
debian
CVE-2024-28956MEDIUMCVSS 5.7fixed in intel-microcode 3.20250512.1~deb12u1 (bookworm)2024
CVE-2024-28956 [MEDIUM] CVE-2024-28956: intel-microcode - Exposure of Sensitive Information in Shared Microarchitectural Structures during...
Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
Scope: local
bookworm: resolved (fixed in 3.20250512.1~deb12u1)
bullseye: resolved (fixed in 3.20250512.1~deb11u1)
forky: resolved (f
debian
CVE-2024-43420MEDIUMCVSS 5.7fixed in intel-microcode 3.20250512.1~deb12u1 (bookworm)2024
CVE-2024-43420 [MEDIUM] CVE-2024-43420: intel-microcode - Exposure of sensitive information caused by shared microarchitectural predictor ...
Exposure of sensitive information caused by shared microarchitectural predictor state that influences transient execution for some Intel Atom(R) processors may allow an authenticated user to potentially enable information disclosure via local access.
Scope: local
bookworm: resolved (fixed in 3.20250512.1~deb12u1)
bullseye: resolved (fixed in 3.20250512.1~d
debian
CVE-2024-39279MEDIUMCVSS 6.8fixed in intel-microcode 3.20250211.1~deb12u1 (bookworm)2024
CVE-2024-39279 [MEDIUM] CVE-2024-39279: intel-microcode - Insufficient granularity of access control in UEFI firmware in some Intel(R) pro...
Insufficient granularity of access control in UEFI firmware in some Intel(R) processors may allow a authenticated user to potentially enable denial of service via local access.
Scope: local
bookworm: resolved (fixed in 3.20250211.1~deb12u1)
bullseye: resolved (fixed in 3.20250211.1~deb11u1)
forky: resolved (fixed in 3.20250211.1)
sid: resolved (fixed in 3.
debian
CVE-2024-31157MEDIUMCVSS 6.8fixed in intel-microcode 3.20250211.1~deb12u1 (bookworm)2024
CVE-2024-31157 [MEDIUM] CVE-2024-31157: intel-microcode - Improper initialization in UEFI firmware OutOfBandXML module in some Intel(R) Pr...
Improper initialization in UEFI firmware OutOfBandXML module in some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access.
Scope: local
bookworm: resolved (fixed in 3.20250211.1~deb12u1)
bullseye: resolved (fixed in 3.20250211.1~deb11u1)
forky: resolved (fixed in 3.20250211.1)
sid: resolved (fixed in
debian
CVE-2024-37020MEDIUMCVSS 4.8fixed in intel-microcode 3.20250211.1~deb12u1 (bookworm)2024
CVE-2024-37020 [MEDIUM] CVE-2024-37020: intel-microcode - Sequence of processor instructions leads to unexpected behavior in the Intel(R) ...
Sequence of processor instructions leads to unexpected behavior in the Intel(R) DSA V1.0 for some Intel(R) Xeon(R) Processors may allow an authenticated user to potentially enable denial of service via local access.
Scope: local
bookworm: resolved (fixed in 3.20250211.1~deb12u1)
bullseye: resolved (fixed in 3.20250211.1~deb11u1)
forky: resolved (fixed in 3
debian
CVE-2024-31068MEDIUMCVSS 5.6fixed in intel-microcode 3.20250211.1~deb12u1 (bookworm)2024
CVE-2024-31068 [MEDIUM] CVE-2024-31068: intel-microcode - Improper Finite State Machines (FSMs) in Hardware Logic for some Intel(R) Proces...
Improper Finite State Machines (FSMs) in Hardware Logic for some Intel(R) Processors may allow privileged user to potentially enable denial of service via local access.
Scope: local
bookworm: resolved (fixed in 3.20250211.1~deb12u1)
bullseye: resolved (fixed in 3.20250211.1~deb11u1)
forky: resolved (fixed in 3.20250211.1)
sid: resolved (fixed in 3.20250211
debian
CVE-2024-25939MEDIUMCVSS 6.7fixed in intel-microcode 3.20240813.1~deb12u1 (bookworm)2024
CVE-2024-25939 [MEDIUM] CVE-2024-25939: intel-microcode - Mirrored regions with different values in 3rd Generation Intel(R) Xeon(R) Scalab...
Mirrored regions with different values in 3rd Generation Intel(R) Xeon(R) Scalable Processors may allow a privileged user to potentially enable denial of service via local access.
Scope: local
bookworm: resolved (fixed in 3.20240813.1~deb12u1)
bullseye: resolved (fixed in 3.20240813.1~deb11u1)
forky: resolved (fixed in 3.20240813.1)
sid: resolved (fixed in
debian
CVE-2024-45332MEDIUMCVSS 5.7fixed in intel-microcode 3.20250512.1~deb12u1 (bookworm)2024
CVE-2024-45332 [MEDIUM] CVE-2024-45332: intel-microcode - Exposure of sensitive information caused by shared microarchitectural predictor ...
Exposure of sensitive information caused by shared microarchitectural predictor state that influences transient execution in the indirect branch predictors for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
Scope: local
bookworm: resolved (fixed in 3.20250512.1~deb12u1)
bullseye: reso
debian
CVE-2024-28047MEDIUMCVSS 6.8fixed in intel-microcode 3.20250211.1~deb12u1 (bookworm)2024
CVE-2024-28047 [MEDIUM] CVE-2024-28047: intel-microcode - Improper input validation in UEFI firmware for some Intel(R) Processors may allo...
Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access.
Scope: local
bookworm: resolved (fixed in 3.20250211.1~deb12u1)
bullseye: resolved (fixed in 3.20250211.1~deb11u1)
forky: resolved (fixed in 3.20250211.1)
sid: resolved (fixed in 3.20250211.1)
tr
debian
CVE-2024-23984MEDIUMCVSS 6.8fixed in intel-microcode 3.20240910.1~deb12u1 (bookworm)2024
CVE-2024-23984 [MEDIUM] CVE-2024-23984: intel-microcode - Observable discrepancy in RAPL interface for some Intel(R) Processors may allow ...
Observable discrepancy in RAPL interface for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access.
Scope: local
bookworm: resolved (fixed in 3.20240910.1~deb12u1)
bullseye: resolved (fixed in 3.20240910.1~deb11u1)
forky: resolved (fixed in 3.20240910.1)
sid: resolved (fixed in 3.20240910.1)
trix
debian
CVE-2024-24968MEDIUMCVSS 5.6fixed in intel-microcode 3.20240910.1~deb12u1 (bookworm)2024
CVE-2024-24968 [MEDIUM] CVE-2024-24968: intel-microcode - Improper finite state machines (FSMs) in hardware logic in some Intel(R) Process...
Improper finite state machines (FSMs) in hardware logic in some Intel(R) Processors may allow an privileged user to potentially enable a denial of service via local access.
Scope: local
bookworm: resolved (fixed in 3.20240910.1~deb12u1)
bullseye: resolved (fixed in 3.20240910.1~deb11u1)
forky: resolved (fixed in 3.20240910.1)
sid: resolved (fixed in 3.2024
debian
CVE-2024-39355MEDIUMCVSS 5.7fixed in intel-microcode 3.20250211.1~deb12u1 (bookworm)2024
CVE-2024-39355 [MEDIUM] CVE-2024-39355: intel-microcode - Improper handling of physical or environmental conditions in some Intel(R) Proce...
Improper handling of physical or environmental conditions in some Intel(R) Processors may allow an authenticated user to enable denial of service via local access.
Scope: local
bookworm: resolved (fixed in 3.20250211.1~deb12u1)
bullseye: resolved (fixed in 3.20250211.1~deb11u1)
forky: resolved (fixed in 3.20250211.1)
sid: resolved (fixed in 3.20250211.1)
t
debian
CVE-2023-34440HIGHCVSS 8.7fixed in intel-microcode 3.20250211.1~deb12u1 (bookworm)2023
CVE-2023-34440 [HIGH] CVE-2023-34440: intel-microcode - Improper input validation in UEFI firmware for some Intel(R) Processors may allo...
Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.
Scope: local
bookworm: resolved (fixed in 3.20250211.1~deb12u1)
bullseye: resolved (fixed in 3.20250211.1~deb11u1)
forky: resolved (fixed in 3.20250211.1)
sid: resolved (fixed in 3.20250211.1)
tri
debian
CVE-2023-43758HIGHCVSS 8.7fixed in intel-microcode 3.20250211.1~deb12u1 (bookworm)2023
CVE-2023-43758 [HIGH] CVE-2023-43758: intel-microcode - Improper input validation in UEFI firmware for some Intel(R) processors may allo...
Improper input validation in UEFI firmware for some Intel(R) processors may allow a privileged user to potentially enable escalation of privilege via local access.
Scope: local
bookworm: resolved (fixed in 3.20250211.1~deb12u1)
bullseye: resolved (fixed in 3.20250211.1~deb11u1)
forky: resolved (fixed in 3.20250211.1)
sid: resolved (fixed in 3.20250211.1)
tri
debian
CVE-2023-49141HIGHCVSS 7.3fixed in intel-microcode 3.20240514.1~deb12u1 (bookworm)2023
CVE-2023-49141 [HIGH] CVE-2023-49141: intel-microcode - Improper isolation in some Intel(R) Processors stream cache mechanism may allow ...
Improper isolation in some Intel(R) Processors stream cache mechanism may allow an authenticated user to potentially enable escalation of privilege via local access.
Scope: local
bookworm: resolved (fixed in 3.20240514.1~deb12u1)
bullseye: resolved (fixed in 3.20240514.1~deb11u1)
forky: resolved (fixed in 3.20240514.1)
sid: resolved (fixed in 3.20240514.1)
t
debian
CVE-2023-45745HIGHCVSS 7.9fixed in intel-microcode 3.20240514.1~deb12u1 (bookworm)2023
CVE-2023-45745 [HIGH] CVE-2023-45745: intel-microcode - Improper input validation in some Intel(R) TDX module software before version 1....
Improper input validation in some Intel(R) TDX module software before version 1.5.05.46.698 may allow a privileged user to potentially enable escalation of privilege via local access.
Scope: local
bookworm: resolved (fixed in 3.20240514.1~deb12u1)
bullseye: resolved (fixed in 3.20240514.1~deb11u1)
forky: resolved (fixed in 3.20240514.1)
sid: resolved (fixed
debian