CVE-2025-35998 Details
Description
Missing protection mechanism for alternate hardware interface in the Intel(R) Quick Assist Technology for some Intel(R) Platforms within Ring 0: Kernel may allow an escalation of privilege. System software adversary with a privileged user combined with a low complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present with special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (high), integrity (high) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (none) impacts.
A vulnerability in Intel Quick Assist Technology (QAT) on certain Intel platforms may allow a privileged user to escalate privileges. This issue arises from a missing protection mechanism for an alternate hardware interface, potentially leading to unauthorized access or control within the system's kernel. The vulnerability requires local access and specific internal knowledge, but no user interaction. It could impact the confidentiality and integrity of the affected system.
Intel recommends that users of Intel Xeon 6 with E-cores microcode update to the latest version provided by the system manufacturer that addresses this issue.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Feb 10, 2026CISA-ADP
Assessed Feb 11, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://access.redhat.com/errata/RHSA-2026:6888 | redhat-SADP | |
| https://access.redhat.com/security/cve/CVE-2025-35998 | redhat-SADP | |
| https://bugzilla.redhat.com/show_bug.cgi?id=2438523 | redhat-SADP | |
| https://security.access.redhat.com/data/csaf/v2/vex/2025/cve-2025-35998.json | redhat-SADP | |
| https://intel.com/content/www/us/en/security-center/advisory/intel-sa-01406.html | [email protected] | AdvisoryBundleRemedyVendor |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-1220 | Insufficient Granularity of Access Control | redhat-SADP |
| CWE-1299 | Missing Protection Mechanism for Alternate Hardware Interface | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| Intel Quick Assist Technology | All versions |
CPE
Remediation
| |
| Intel Atom P5000 | All versions |
CPE
Remediation
| |
| Intel Atom C5000 | All versions |
CPE
Remediation
| |
| Intel Atom P6000 | All versions |
CPE
Remediation
| |
| Intel Xeon 6700P-B | All versions |
CPE
Remediation
| |
| Intel Xeon 6500P-B | All versions |
CPE
Remediation
| |
| Intel Xeon 6 | All versions |
CPE
Remediation
| |
Change History
5 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jul 15, 2026 | CVE Modified | redhat-SADP |
| Jun 30, 2026 | CVE Modified | redhat-SADP |
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Feb 10, 2026 | New CVE Received | [email protected] |
Volerion