Escalation of Privilege Vulnerability in UEFI Firmware for Intel Reference Platforms
CVE-2025-20096

5.9MEDIUM

What is CVE-2025-20096?

A flaw in the UEFI firmware for certain Intel Reference Platforms permits escalation of privilege due to improper input validation. This vulnerability could allow a system software adversary with access to a privileged user account to execute a complex attack, enabling potential data manipulation on the system. Although local access and user interaction are required to exploit this vulnerability, the risks include significant impacts on the integrity and availability of the affected systems. Organizations utilizing these platforms should assess their exposure and implement recommended security measures as per Intel's advisory.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Intel Reference Platforms may allow an escalation of privilege. System software adversary with a privileged user combined with a high complexity attack may enable data manipulation. This result may potentially occur via local access when attack requirements are present without special internal knowledge and requires active user interaction. The potential vulnerability may impact the confidentiality (none), integrity (high) and availability (high) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (high) and availability (high) impacts. See references

References

CVSS V4

Score:
5.9
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.