CVE-2025-24495
Incorrect initialization of resource in the branch prediction unit for some Intel(R) Core™ Ultra Processors may allow an authenticated user to potentially enable information disclosure via local access.
Scoring
- Severity
- MEDIUM
- CVSS base score
- 6.8
- CVSS vector
- CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:N/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N
- EPSS probability
- 0.18%
- CWE
- CWE-1419
- Published
- 2025-05-13
- Last modified
- 2026-03-12
Affected products
- n/a Intel(R) Core™ Ultra Processors
Weakness type
Related vulnerabilities
- CVE-2026-33773 — Junos OS: EX Series, QFX Series: If the same egress filter is configured on both an IRB and a physical interface one of those is not applied
- CVE-2026-21913 — Junos OS: EX4000: A high volume of traffic destined to the device leads to a crash and restart
- CVE-2025-53800 — Windows Graphics Component Elevation of Privilege Vulnerability
- CVE-2024-57375 — Andamiro Pump It Up 20th Anniversary (aka Double X or XX/2019) 1.00.0-2.08.3 allows a physically...
- CVE-2024-0103 — CVE
- CVE-2023-45085 — When compute hosts are disabled and reenabled, they immediately transition to "ON", not "INIT"
- CVE-2023-5078 — A vulnerability was reported in some ThinkPad BIOS that could allow a physical or local attacker...