CVE-2024-31068 Details
Description
Improper Finite State Machines (FSMs) in Hardware Logic for some Intel(R) Processors may allow privileged user to potentially enable denial of service via local access.
A denial-of-service vulnerability has been identified in some Intel processors, including the 12th, 13th, and 14th Generation Intel Core processors, Intel Core Ultra processors, and 4th and 5th Generation Intel Xeon Scalable processors. This vulnerability arises from improper finite state machines in hardware logic, which may allow a privileged user to disrupt service via local access.
Intel has released microcode updates for the affected processors, available on the public Intel GitHub repository. Users are advised to update to the latest version provided by their system manufacturer that addresses this issue.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Feb 12, 2025CISA-ADP
Assessed Feb 13, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://lists.debian.org/debian-lts-announce/2025/03/msg00021.html | CVE | |
| https://intel.com/content/www/us/en/security-center/advisory/intel-sa-01166.html | [email protected] | AdvisoryRemedyVendor |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-1245 | Improper Finite State Machines (FSMs) in Hardware Logic | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| Intel 12th Generation Core | All versions |
CPE
Remediation
| |
| Intel 13th Generation Core | All versions |
CPE
Remediation
| |
| Intel 14th Generation Core | All versions |
CPE
Remediation
| |
| Intel Core Ultra | All versions |
CPE
Remediation
| |
| Intel 4th Generation Xeon Scalable | All versions |
CPE
Remediation
| |
| Intel 5th Generation Xeon Scalable | All versions |
CPE
Remediation
| |
Change History
4 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Nov 3, 2025 | CVE Modified | CVE |
| Feb 12, 2025 | New CVE Received | [email protected] |
Volerion