Denial of Service and Privilege Escalation Vulnerability in Intel UEFI Platforms
CVE-2025-30185

8.3HIGH

Key Information:

Vendor

Intel

Vendor
CVE Published:
11 November 2025

What is CVE-2025-30185?

A vulnerability exists in specific Intel UEFI reference platforms that may allow an attacker with privileged access to execute a low-complexity attack, leading to potential denial of service and escalation of privilege. This vulnerability exploits active debug code within the operating environment, potentially allowing changes to system data without user interaction. It demands local access, and while the attack requires limited knowledge, its ramifications can compromise the integrity and availability of the affected system.

Affected Version(s)

Intel UEFI reference platforms See references

References

CVSS V4

Score:
8.3
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.