CVE-2025-35987: Medium severity vulnerability
Omission of security-relevant information for some Intel(R) Software Guard Extensions Data Center Attestation Primitives within Ring 0: Kernel may allow a denial of service. Authorized adversary with a privileged user combined with a high complexity attack may enable data alteration. This result may potentially occur via local access when attack requirements are present with special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (none), integrity (low) and availability (low) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (high) and availability (low) impacts.
Event History
Frequently Asked Questions
What is the severity of CVE-2025-35987?
CVE-2025-35987 is rated with a risk score of 29, indicating a potential denial of service vulnerability.
What impact does CVE-2025-35987 have on systems?
CVE-2025-35987 can lead to data alteration or denial of service when exploited by an authorized adversary with privileged access.
How can systems be protected against CVE-2025-35987?
To mitigate CVE-2025-35987, ensure that your Intel Software Guard Extensions and associated primitives are updated to the latest security patches.
Who is affected by CVE-2025-35987?
CVE-2025-35987 affects users of Intel Software Guard Extensions, particularly in data center environments where privileged access is present.
When was CVE-2025-35987 published?
CVE-2025-35987 was published on August 11, 2026.