PT-2025-17629 · Intel+9 · Intel Processors+9

Published

2024-09-30

·

Updated

2025-11-26

·

CVE-2024-45332

CVSS v4.0

5.7

Medium

VectorAV:L/AC:H/AT:P/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions Intel CPUs from 9th generation onward (affected versions not specified)
Description The issue is related to a flaw in the branch predictor component of Intel CPUs, which can be exploited to leak sensitive data from privileged memory. This is due to a race condition in the branch predictor that allows attackers to influence the execution of instructions and potentially access protected information. The vulnerability can be exploited by authenticated users with local access, and it may allow the disclosure of sensitive information such as passwords, cryptographic keys, and other protected data. Researchers have demonstrated the exploitability of this issue, and it is considered a critical vulnerability.
Recommendations As a temporary workaround, consider disabling the branch predictor component until a patch is available. Apply the latest microcode updates from Intel to mitigate the vulnerability. Restrict access to sensitive information and limit the use of affected systems until the issue is fully resolved. Note: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Race Condition

Information Disclosure

Time Of Check To Time Of Use

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

ALT-PU-2025-14707
BDU:2025-05619
CESA-2025_10991
CVE-2024-45332
DLA-4170-1
DSA-5924-1
INFBA-2025_9433
MGASA-2025-0160
OESA-2025-1528
OPENSUSE-SU-2025:15093-1
OPENSUSE-SU-2025_01651-1
RHSA-2025:10101
RHSA-2025:10102
RHSA-2025:10103
RHSA-2025:10107
RHSA-2025:10108
RHSA-2025:10109
RHSA-2025:10111
RHSA-2025:10126
RHSA-2025:10162
RHSA-2025:10991
RHSA-2025_10991
SUSE-SU-2025:01650-1
SUSE-SU-2025:01651-1
SUSE-SU-2025:01651-2
SUSE-SU-2025:1567-1
SUSE-SU-2025:20410-1
SUSE-SU-2025:20424-1
SUSE-SU-2025_01650-1
SUSE-SU-2025_01651-1
SUSE-SU-2025_01651-2
SUSE-SU-2025_1567-1
USN-7535-1

Affected Products

Alt Linux
Astra Linux
Centos
Debian
Intel Processors
Linuxmint
Red Hat
Rocky Linux
Suse
Ubuntu