PT-2025-50218 · Unknown+1 · Pci Express+1

Published

2025-12-09

·

Updated

2025-12-10

·

CVE-2025-9613

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions PCI Express (PCIe) Integrity and Data Encryption (IDE) specification (affected versions not specified)
Description The PCI Express (PCIe) Integrity and Data Encryption (IDE) specification contains a flaw related to inadequate guidance on tag reuse following completion timeouts. This can lead to multiple outstanding Non-Posted Requests utilizing the same tag, resulting in a tag aliasing condition. This condition may cause completions to be incorrectly delivered to the wrong security context, potentially compromising data integrity and confidentiality.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-2025-9613

Affected Products

Pci Express
Pcie Ide