CVE-2026-20707: Race Condition
Hardware logic contains race conditions for some 3rd Gen Intel(R) Xeon(R) Scalable Processors within Ring 3: unprivileged software may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a high complexity attack may enable denial of service. This result may potentially occur via local access when attack requirements are not present with special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (none), integrity (none) and availability (high) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (high) impacts.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-20707?
CVE-2026-20707 has a risk rating of 41, indicating a potential denial of service vulnerability.
How does CVE-2026-20707 affect Intel 3rd Gen Xeon Scalable Processors?
CVE-2026-20707 involves race conditions in hardware logic that can allow unprivileged software to cause a denial of service.
Who is primarily at risk from CVE-2026-20707?
Unprivileged software adversaries with authenticated user access can exploit CVE-2026-20707 to launch complex denial of service attacks.
What types of attacks can CVE-2026-20707 facilitate?
CVE-2026-20707 can facilitate denial of service attacks through high complexity exploitation of race conditions.
Is there a patch available for CVE-2026-20707?
As of now, Intel has not publicly provided specific mitigation instructions or patches for CVE-2026-20707.