VYPR

Vendor CVEs

Intel

All CVEs

2,357 total · sorted by risk
  • CVE-2025-22885MedFeb 10, 2026
    risk 0.31cvss 4.7epss 0.00

    Improper buffer restrictions in the firmware for the TDX Module may allow an escalation of privilege. System software adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access…

  • CVE-2025-20611MedMay 13, 2025
    risk 0.31cvss 4.7epss 0.00

    Exposure of sensitive information to an unauthorized actor for some Edge Orchestrator software for Intel(R) Tiber™ Edge Platform may allow an authenticated user to potentially enable information disclosure via local access.

  • CVE-2022-28693MedFeb 14, 2025
    risk 0.31cvss 4.7epss 0.00

    Unprotected alternative channel of return branch target prediction in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.

  • CVE-2024-39779MedFeb 12, 2025
    risk 0.31cvss 4.7epss 0.00

    Stack-based buffer overflow in some drivers for Intel(R) Ethernet Connection I219 Series before version 12.19.1.39 may allow an authenticated user to potentially enable denial of service via local access.

  • CVE-2024-2201MedDec 19, 2024
    risk 0.31cvss 4.7epss 0.09

    A cross-privilege Spectre v2 vulnerability allows attackers to bypass all deployed mitigations, including the recent Fine(IBT), and to leak arbitrary Linux kernel memory on Intel systems.

  • CVE-2024-21853MedNov 13, 2024
    risk 0.31cvss 4.7epss 0.00

    Improper finite state machines (FSMs) in the hardware logic in some 4th and 5th Generation Intel(R) Xeon(R) Processors may allow an authorized user to potentially enable denial of service via local access.

  • CVE-2024-21783MedNov 13, 2024
    risk 0.31cvss 4.8epss 0.00

    Integer overflow for some Intel(R) VPL software before version 24.1.4 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2024-32666MedSep 16, 2024
    risk 0.31cvss 4.7epss 0.00

    NULL pointer dereference in Intel(R) RAID Web Console software for all versions may allow an authenticated user to potentially enable denial of service via local access.

  • CVE-2024-21792MedMay 16, 2024
    risk 0.31cvss 4.7epss 0.00

    Time-of-check Time-of-use race condition in Intel(R) Neural Compressor software before version 2.5.0 may allow an authenticated user to potentially enable information disclosure via local access.

  • CVE-2023-47210MedMay 16, 2024
    risk 0.31cvss 4.7epss 0.00

    Improper input validation for some Intel(R) PROSet/Wireless WiFi software for linux before version 23.20 may allow an unauthenticated user to potentially enable denial of service via adjacent access.

  • CVE-2023-46103MedMay 16, 2024
    risk 0.31cvss 4.7epss 0.00

    Sequence of processor instructions leads to unexpected behavior in Intel(R) Core(TM) Ultra Processors may allow an authenticated user to potentially enable denial of service via local access.

  • CVE-2023-45221MedMay 16, 2024
    risk 0.31cvss 4.8epss 0.00

    Improper buffer restrictions in Intel(R) Media SDK all versions may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2023-43487MedMay 16, 2024
    risk 0.31cvss 4.7epss 0.00

    Improper access control in some Intel(R) CST before version 2.1.10300 may allow an authenticated user to potentially enable denial of service via local access.

  • CVE-2023-23580MedMay 10, 2023
    risk 0.31cvss 4.8epss 0.00

    Stack-based buffer overflow for some Intel(R) Trace Analyzer and Collector software before version 2021.8.0 published Dec 2022 may allow an authenticated user to potentially escalation of privilege via local access.

  • CVE-2022-41769MedMay 10, 2023
    risk 0.31cvss 4.8epss 0.00

    Improper access control in the Intel(R) Connect M Android application before version 1.82 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2022-41646MedMay 10, 2023
    risk 0.31cvss 4.7epss 0.00

    Insufficient control flow management in the Intel(R) IPP Cryptography software before version 2021.6 may allow an unauthenticated user to potentially enable information disclosure via local access.

  • CVE-2022-37409MedMay 10, 2023
    risk 0.31cvss 4.7epss 0.00

    Insufficient control flow management for the Intel(R) IPP Cryptography software before version 2021.6 may allow an authenticated user to potentially enable information disclosure via local access.

  • CVE-2022-34843MedFeb 16, 2023
    risk 0.31cvss 4.8epss 0.00

    Integer overflow in the Intel(R) Trace Analyzer and Collector software before version 2021.5 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2022-34346MedFeb 16, 2023
    risk 0.31cvss 4.8epss 0.00

    Out-of-bounds read in the Intel(R) Media SDK software before version 22.2.2 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2022-32575MedFeb 16, 2023
    risk 0.31cvss 4.8epss 0.00

    Out-of-bounds write in the Intel(R) Trace Analyzer and Collector software before version 2021.5 may allow an authenticated user to potentially enable escalation of privilege via local access.

  • CVE-2021-33078MedMay 12, 2022
    risk 0.31cvss 4.7epss 0.00

    Race condition within a thread in firmware for some Intel(R) Optane(TM) SSD and Intel(R) SSD DC Products may allow a privileged user to potentially enable denial of service via local access.

  • CVE-2021-33075MedMay 12, 2022
    risk 0.31cvss 4.7epss 0.00

    Race condition in firmware for some Intel(R) Optane(TM) SSD, Intel(R) Optane(TM) SSD DC and Intel(R) SSD DC Products may allow a privileged user to potentially enable denial of service via local access.

  • CVE-2021-0001MedJun 9, 2021
    risk 0.31cvss 4.7epss 0.00

    Observable timing discrepancy in Intel(R) IPP before version 2020 update 1 may allow authorized user to potentially enable information disclosure via local access.

  • CVE-2020-0568MedApr 15, 2020
    risk 0.31cvss 4.7epss 0.00

    Race condition in the Intel(R) Driver and Support Assistant before version 20.1.5 may allow an authenticated user to potentially enable denial of service via local access.

  • CVE-2019-11184MedSep 16, 2019
    risk 0.31cvss 4.8epss 0.01

    A race condition in specific microprocessors using Intel (R) DDIO cache allocation and RDMA may allow an authenticated user to potentially enable partial information disclosure via adjacent access.

  • CVE-2019-0114MedMay 17, 2019
    risk 0.31cvss 4.7epss 0.00

    A race condition in Intel(R) Graphics Drivers before version 10.18.14.5067 (aka 15.36.x.5067) and 10.18.10.5069 (aka 15.33.x.5069) may allow an authenticated user to potentially enable a denial of service via local access.

  • CVE-2018-12163MedSep 12, 2018
    risk 0.31cvss 4.8epss 0.01

    A DLL injection vulnerability in the Intel IoT Developers Kit 4.0 installer may allow an authenticated user to potentially escalate privileges using file modification via local access.

  • CVE-2018-3691MedJun 5, 2018
    risk 0.31cvss 4.7epss 0.00

    Some implementations in Intel Integrated Performance Primitives Cryptography Library before version 2018 U3.1 do not properly ensure constant execution time.

  • CVE-2018-3626MedMar 20, 2018
    risk 0.31cvss 4.7epss 0.00

    Edger8r tool in the Intel SGX SDK before version 2.1.2 (Linux) and 1.9.6 (Windows) may generate code that is susceptible to a side channel potentially allowing a local user to access unauthorized information.

  • CVE-2016-8018MedMar 14, 2017
    risk 0.31cvss 4.3epss 0.02

    Cross-site request forgery (CSRF) vulnerability in Intel Security VirusScan Enterprise Linux (VSEL) 2.0.3 (and earlier) allows authenticated remote attackers to execute unauthorized commands via a crafted user input.

  • CVE-2026-35502MedAug 11, 2026
    risk 0.30cvss epss 0.00

    Deserialization of untrusted data for some Intel(R) Extension for PyTorch before version 2.8.0 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with an unauthenticated user combined with a low complexity attack may enable…

  • CVE-2025-22446MedMay 13, 2025
    risk 0.30cvss 4.6epss 0.00

    Inadequate encryption strength for some Edge Orchestrator software for Intel(R) Tiber™ Edge Platform may allow an authenticated user to potentially enable escalation of privilege via adjacent access.

  • CVE-2024-36247MedSep 16, 2024
    risk 0.30cvss 4.6epss 0.00

    Improper access control in Intel(R) RAID Web Console all versions may allow an authenticated user to potentially enable denial of service via adjacent access.

  • CVE-2023-27308MedFeb 14, 2024
    risk 0.30cvss 4.6epss 0.00

    Improper buffer restrictions in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2023-25756MedNov 14, 2023
    risk 0.30cvss 4.6epss 0.00

    Out-of-bounds read in the BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege via adjacent access.

  • CVE-2023-34349MedAug 11, 2023
    risk 0.30cvss 4.6epss 0.00

    Race condition in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2021-33130MedMay 12, 2022
    risk 0.30cvss 4.6epss 0.00

    Insecure default variable initialization of Intel(R) RealSense(TM) ID Solution F450 before version 2.6.0.74 may allow an unauthenticated user to potentially enable information disclosure via physical access.

  • CVE-2021-33082MedMay 12, 2022
    risk 0.30cvss 4.6epss 0.00

    Sensitive information in resource not removed before reuse in firmware for some Intel(R) SSD and Intel(R) Optane(TM) SSD Products may allow an unauthenticated user to potentially enable information disclosure via physical access.

  • CVE-2021-33074MedMay 12, 2022
    risk 0.30cvss 4.6epss 0.00

    Protection mechanism failure in firmware for some Intel(R) SSD, Intel(R) SSD DC and Intel(R) Optane(TM) SSD Products may allow an unauthenticated user to potentially enable information disclosure via physical access.

  • CVE-2021-33107MedFeb 9, 2022
    risk 0.30cvss 4.6epss 0.00

    Insufficiently protected credentials in USB provisioning for Intel(R) AMT SDK before version 16.0.3, Intel(R) SCS before version 12.2 and Intel(R) MEBx before versions 11.0.0.0012, 12.0.0.0011, 14.0.0.0004 and 15.0.0.0004 may allow an unauthenticated user to potentially enable…

  • CVE-2021-0129MedJun 9, 2021
    risk 0.30cvss 5.7epss 0.01

    Improper access control in BlueZ may allow an authenticated user to potentially enable information disclosure via adjacent access.

  • CVE-2020-8761MedNov 12, 2020
    risk 0.30cvss 4.6epss 0.00

    Inadequate encryption strength in subsystem for Intel(R) CSME versions before 13.0.40 and 13.30.10 may allow an unauthenticated user to potentially enable information disclosure via physical access.

  • CVE-2020-8751MedNov 12, 2020
    risk 0.30cvss 4.6epss 0.00

    Insufficient control flow management in subsystem for Intel(R) CSME versions before 11.8.80, Intel(R) TXE versions before 3.1.80 may allow an unauthenticated user to potentially enable information disclosure via physical access.

  • CVE-2020-12311MedNov 12, 2020
    risk 0.30cvss 4.6epss 0.00

    Insufficient control flow managementin firmware in some Intel(R) Client SSDs and some Intel(R) Data Center SSDs may allow an unauthenticated user to potentially enable information disclosure via physical access.

  • CVE-2020-12310MedNov 12, 2020
    risk 0.30cvss 4.6epss 0.00

    Insufficient control flow managementin firmware in some Intel(R) Client SSDs and some Intel(R) Data Center SSDs may allow an unauthenticated user to potentially enable information disclosure via physical access.

  • CVE-2020-12309MedNov 12, 2020
    risk 0.30cvss 4.6epss 0.00

    Insufficiently protected credentialsin subsystem in some Intel(R) Client SSDs and some Intel(R) Data Center SSDs may allow an unauthenticated user to potentially enable information disclosure via physical access.

  • CVE-2019-14630MedAug 13, 2020
    risk 0.30cvss 4.6epss 0.00

    Reliance on untrusted inputs in a security decision in some Intel(R) Thunderbolt(TM) controllers may allow unauthenticated user to potentially enable information disclosure via physical access.

  • CVE-2019-11100MedDec 18, 2019
    risk 0.30cvss 4.6epss 0.00

    Insufficient input validation in the subsystem for Intel(R) AMT before versions 11.8.70, 11.11.70, 11.22.70 and 12.0.45 may allow an unauthenticated user to potentially enable information disclosure via physical access.

  • CVE-2018-12188MedMar 14, 2019
    risk 0.30cvss 4.6epss 0.00

    Insufficient input validation in Intel CSME before versions 11.8.60, 11.11.60, 11.22.60 or 12.0.20 or Intel TXE before version 3.1.60 or 4.0.10 may allow an unauthenticated user to potentially modify data via physical access.

  • CVE-2018-3619MedJul 10, 2018
    risk 0.30cvss 4.6epss 0.00

    Information disclosure vulnerability in storage media in systems with Intel Optane memory module with Whole Disk Encryption may allow an attacker to recover data via physical access.

Page 40 of 48