Out-of-Bounds Read Vulnerability in Intel QAT Windows Software
CVE-2025-31937

5.7MEDIUM

Key Information:

Vendor

Intel

Vendor
CVE Published:
11 November 2025

What is CVE-2025-31937?

An out-of-bounds read vulnerability exists in Intel QAT Windows software versions prior to 2.6.0, which could be exploited under specific conditions. An attacker with local access and certain knowledge can leverage this vulnerability to cause a denial of service. This exploit does not require user interaction, making it potentially more dangerous. The impact is predominantly on the availability of the affected system, but confidentiality and integrity remain unaffected.

Affected Version(s)

Intel(R) QAT Windows software before version 2.6.0.

References

CVSS V4

Score:
5.7
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-31937 : Out-of-Bounds Read Vulnerability in Intel QAT Windows Software