AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2025-35987

MEDIUM · CVSS 4.3 EPSS 0.10%

Source: NVD + CISA KEV + EPSS · Published 2026-08-11 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

The vulnerability affects Intel Software Guard Extensions Data Center Attestation Primitives within the kernel, allowing an authorized adversary with privileged access to execute a complex denial-of-service attack that could lead to data alteration. While the immediate impact on confidentiality is negligible, the integrity of the system is at moderate risk, necessitating attention from organizations utilizing Intel SGX technology in environments where privileged access is possible. Security teams should prioritize this issue to mitigate potential integrity breaches and ensure system availability.

CVE
CVE-2025-35987
Severity
MEDIUM
CVSS
4.3
EPSS
0.10%

Original NVD Description

Omission of security-relevant information for some Intel(R) Software Guard Extensions Data Center Attestation Primitives within Ring 0: Kernel may allow a denial of service. Authorized adversary with a privileged user combined with a high complexity attack may enable data alteration. This result may potentially occur via local access when attack requirements are present with special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (none), integrity (low) and availability (low) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (high) and availability (low) impacts.