CVE-2024-36293 MEDIUM

CVE-2024-36293

Vendor N/A
Product Intel(R) Processors with Intel(R) SGX
Weakness CWE-284
Published February 12, 2025
Last update November 3, 2025

CVSS base score

6.5/10
Attack vector Local
Attack complexity Low
Privileges required Low
User interaction None
Confidentiality None
Integrity None

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H

What the vulnerability does

01Description

Improper access control in the EDECCSSA user leaf function for some Intel(R) Processors with Intel(R) SGX may allow an authenticated user to potentially enable denial of service via local access.

Key dates

02Disclosure timeline

February 12, 2025 CVE published
November 3, 2025 Record updated