CVE-2024-28956
Severity CVSS v4.0:
MEDIUM
Type:
Unavailable / Other
Publication date:
13/05/2025
Last modified:
15/04/2026
Description
Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
Impact
Base Score 4.0
5.70
Severity 4.0
MEDIUM
Base Score 3.x
5.60
Severity 3.x
MEDIUM
References to Advisories, Solutions, and Tools
- https://intel.com/content/www/us/en/security-center/advisory/intel-sa-01153.html
- http://www.openwall.com/lists/oss-security/2025/05/12/5
- http://xenbits.xen.org/xsa/advisory-469.html
- https://lists.debian.org/debian-lts-announce/2025/05/msg00021.html
- https://lists.debian.org/debian-lts-announce/2025/08/msg00010.html
- https://lists.debian.org/debian-lts-announce/2025/10/msg00007.html



