CVE-2025-6573
Kernel software installed and running inside an untrusted/rich execution environment (REE) could leak information from the trusted execution environment (TEE).
Scoring
- Severity
- CRITICAL
- CVSS base score
- 9.8
- CVSS vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- EPSS probability
- 0.42%
- CWE
- CWE-280
- Published
- 2025-08-08
- Last modified
- 2026-09-17
Affected products
- Imagination Technologies Graphics DDK
- Imagination Technologies Graphics DDK
- Imagination Technologies Graphics DDK
- Imagination Technologies Graphics DDK
- Imagination Technologies Graphics DDK
Weakness type
Related vulnerabilities
- CVE-2024-25108 — Insufficient authorization allowing elevated access to resources in pixelfed
- CVE-2024-46874 — Ruijie Reyee OS Improper Handling of Insufficient Permissions or Privileges
- CVE-2025-31173 — Memory write permission bypass vulnerability in the kernel futex module Impact: Successful exploitation of this vulnerab
- CVE-2025-27025 — Improper File Access in Infinera G42
- CVE-2026-2123 — Privilege escalation vulnerability in Operations Agent
- CVE-2022-4863 — Improper Handling of Insufficient Permissions or Privileges in usememos/memos
- CVE-2024-51459 — IBM InfoSphere Server Information command execution
- CVE-2026-23857 — Dell Update Package (DUP) Framework, versions 23.12.00 through 24.12.00, contains an Improper Handling of Insufficient P