cbcvebase.

Debian Intel-Microcode vulnerabilities

90 known vulnerabilities affecting debian/intel-microcode.

Total CVEs
90
CISA KEV
0
Public exploits
2
Exploited in wild
1
Severity breakdown
HIGH21MEDIUM66LOW3

Vulnerabilities

Page 5 of 5
CVE-2024-31068P4MEDIUMCVSS 5.6fixed in intel-microcode 3.20250211.1~deb12u1 (bookworm)2024
CVE-2024-31068 [MEDIUM] CVE-2024-31068: intel-microcode - Improper Finite State Machines (FSMs) in Hardware Logic for some Intel(R) Proces... Improper Finite State Machines (FSMs) in Hardware Logic for some Intel(R) Processors may allow privileged user to potentially enable denial of service via local access. Scope: local bookworm: resolved (fixed in 3.20250211.1~deb12u1) bullseye: resolved (fixed in 3.20250211.1~deb11u1) forky: resolved (fixed in 3.20250211.1) sid: resolved (fixed in 3.20250211
debian
CVE-2024-24968P4MEDIUMCVSS 5.6fixed in intel-microcode 3.20240910.1~deb12u1 (bookworm)2024
CVE-2024-24968 [MEDIUM] CVE-2024-24968: intel-microcode - Improper finite state machines (FSMs) in hardware logic in some Intel(R) Process... Improper finite state machines (FSMs) in hardware logic in some Intel(R) Processors may allow an privileged user to potentially enable a denial of service via local access. Scope: local bookworm: resolved (fixed in 3.20240910.1~deb12u1) bullseye: resolved (fixed in 3.20240910.1~deb11u1) forky: resolved (fixed in 3.20240910.1) sid: resolved (fixed in 3.2024
debian
CVE-2022-33972P4MEDIUMCVSS 6.1fixed in intel-microcode 3.20230214.1 (bookworm)2022
CVE-2022-33972 [MEDIUM] CVE-2022-33972: intel-microcode - Incorrect calculation in microcode keying mechanism for some 3rd Generation Inte... Incorrect calculation in microcode keying mechanism for some 3rd Generation Intel(R) Xeon(R) Scalable Processors may allow a privileged user to potentially enable information disclosure via local access. Scope: local bookworm: resolved (fixed in 3.20230214.1) bullseye: resolved (fixed in 3.20230214.1~deb11u1) forky: resolved (fixed in 3.20230214.1) sid: re
debian
CVE-2022-38090P4MEDIUMCVSS 6.0fixed in intel-microcode 3.20230214.1 (bookworm)2022
CVE-2022-38090 [MEDIUM] CVE-2022-38090: intel-microcode - Improper isolation of shared resources in some Intel(R) Processors when using In... Improper isolation of shared resources in some Intel(R) Processors when using Intel(R) Software Guard Extensions may allow a privileged user to potentially enable information disclosure via local access. Scope: local bookworm: resolved (fixed in 3.20230214.1) bullseye: resolved (fixed in 3.20230214.1~deb11u1) forky: resolved (fixed in 3.20230214.1) sid: re
debian
CVE-2024-21853P4MEDIUMCVSS 5.7fixed in intel-microcode 3.20241112.1~deb12u1 (bookworm)2024
CVE-2024-21853 [MEDIUM] CVE-2024-21853: intel-microcode - Improper finite state machines (FSMs) in the hardware logic in some 4th and 5th ... Improper finite state machines (FSMs) in the hardware logic in some 4th and 5th Generation Intel(R) Xeon(R) Processors may allow an authorized user to potentially enable denial of service via local access. Scope: local bookworm: resolved (fixed in 3.20241112.1~deb12u1) bullseye: resolved (fixed in 3.20241112.1~deb11u1) forky: resolved (fixed in 3.20241112.
debian
CVE-2023-46103P4MEDIUMCVSS 4.7fixed in intel-microcode 3.20240514.1~deb12u1 (bookworm)2023
CVE-2023-46103 [MEDIUM] CVE-2023-46103: intel-microcode - Sequence of processor instructions leads to unexpected behavior in Intel(R) Core... Sequence of processor instructions leads to unexpected behavior in Intel(R) Core(TM) Ultra Processors may allow an authenticated user to potentially enable denial of service via local access. Scope: local bookworm: resolved (fixed in 3.20240514.1~deb12u1) bullseye: resolved (fixed in 3.20240514.1~deb11u1) forky: resolved (fixed in 3.20240514.1) sid: resolv
debian
CVE-2025-31648P4LOWCVSS 1.8fixed in intel-microcode 3.20260210.1 (forky)2025
CVE-2025-31648 [LOW] CVE-2025-31648: intel-microcode - Improper handling of values in the microcode flow for some Intel(R) Processor Fa... Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present with special internal
debian
CVE-2024-37020P4MEDIUMCVSS 4.8fixed in intel-microcode 3.20250211.1~deb12u1 (bookworm)2024
CVE-2024-37020 [MEDIUM] CVE-2024-37020: intel-microcode - Sequence of processor instructions leads to unexpected behavior in the Intel(R) ... Sequence of processor instructions leads to unexpected behavior in the Intel(R) DSA V1.0 for some Intel(R) Xeon(R) Processors may allow an authenticated user to potentially enable denial of service via local access. Scope: local bookworm: resolved (fixed in 3.20250211.1~deb12u1) bullseye: resolved (fixed in 3.20250211.1~deb11u1) forky: resolved (fixed in 3
debian
CVE-2020-24512P4LOWCVSS 3.3fixed in intel-microcode 3.20210608.1 (bookworm)2020
CVE-2020-24512 [LOW] CVE-2020-24512: intel-microcode - Observable timing discrepancy in some Intel(R) Processors may allow an authentic... Observable timing discrepancy in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. Scope: local bookworm: resolved (fixed in 3.20210608.1) bullseye: resolved (fixed in 3.20210608.1) forky: resolved (fixed in 3.20210608.1) sid: resolved (fixed in 3.20210608.1) trixie: resolved (fixed in 3.20
debian
CVE-2023-45733P4LOWCVSS 2.8fixed in intel-microcode 3.20240514.1~deb12u1 (bookworm)2023
CVE-2023-45733 [LOW] CVE-2023-45733: intel-microcode - Hardware logic contains race conditions in some Intel(R) Processors may allow an... Hardware logic contains race conditions in some Intel(R) Processors may allow an authenticated user to potentially enable partial information disclosure via local access. Scope: local bookworm: resolved (fixed in 3.20240514.1~deb12u1) bullseye: resolved (fixed in 3.20240514.1~deb11u1) forky: resolved (fixed in 3.20240514.1) sid: resolved (fixed in 3.20240514.
debian
Debian Intel-Microcode vulnerabilities | cvebase