CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

[UPDATE] [mittel] Intel Prozessor: Mehrere Schwachstellen

mediumCVE-2025-31356CVE-2025-31936CVE-2025-31938CVE-2026-20707CVE-2026-20716CVE-2026-20760
Ein lokaler Angreifer kann mehrere Schwachstellen in Intel Prozessor ausnutzen, um erweiterte Rechte zu erlangen, Daten zu manipulieren, vertrauliche Informationen offenzulegen oder einen Denial-of-Service-Zustand auszulösen.

CSIRTS triage

What
Multiple processor vulnerabilities allow local privilege escalation, data manipulation, information disclosure, and denial of service.
Who is affected
Systems with Intel processors where local access is possible.
Urgency
Medium severity for processor-level issues; requires local access but impacts confidentiality and integrity.
Action
Install microcode updates and firmware patches from Intel for the affected processor lines.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch Processor

Get an email when a new Processor advisory drops — max one per day, one-click unsubscribe.

Details

Source
CERT-Bund (BSI) Security Advisories (DE · national-cert · site)
Severity
medium
Published
2026-09-10
Exploitation
Not in CISA KEV at last sync

Original advisory: https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-2772

Exploitation outlook

EPSS (FIRST.org) estimates each CVE’s probability of exploitation in the next 30 days — here is the CSIRTS.com read on those numbers.

Referenced CVEs

CVECSIRTS overviewExternal
CVE-2025-31356coverage & exploitation statusNVD · CVE.org
CVE-2025-31936coverage & exploitation statusNVD · CVE.org
CVE-2025-31938coverage & exploitation statusNVD · CVE.org
CVE-2026-20707coverage & exploitation statusNVD · CVE.org
CVE-2026-20716coverage & exploitation statusNVD · CVE.org
CVE-2026-20760coverage & exploitation statusNVD · CVE.org
CVE-2026-20898coverage & exploitation statusNVD · CVE.org
CVE-2026-20917coverage & exploitation statusNVD · CVE.org
CVE-2026-20713coverage & exploitation statusNVD · CVE.org
CVE-2026-20901coverage & exploitation statusNVD · CVE.org
CVE-2026-25194coverage & exploitation statusNVD · CVE.org
CVE-2026-28729coverage & exploitation statusNVD · CVE.org

Same CVEs, other sources

How other CERTs, PSIRTs and databases cover the vulnerabilities in this advisory.

More from CERT-Bund (BSI) Security Advisories