Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4027 articles · 143469 vulns · 36/41 feeds (7d)
← Back to list
—
CVE-2025-35991
intel · Intel Platform

CVE-2025-35991: Improper initialization in the UEFI firmware for some Intel platforms within Ring 0: Bare Metal OS may allow an informat

Description

Improper initialization in the UEFI firmware for some Intel platforms within Ring 0: Bare Metal OS may allow an information disclosure. System software adversary with a privileged user combined with a high complexity attack may enable data exposure. This result may potentially occur via local access when attack requirements are present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (high), integrity (none) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (none) impacts.

Affected Products

VendorProductVersions
intelIntel PlatformSee references

References

  • https://intel.com/content/www/us/en/security-center/advisory/intel-sa-01413.html

Related News (1 articles)

Tier C
VulDB5h ago
CVE-2025-35991 | Intel Platform initialization (intel-sa-01413)
→ No new info (linked only)
CISA KEV❌ No
Actively exploited❌ No
CWECWE-665
PublishedMay 12, 2026
Last enriched5h agov2
Trending Score20
Source articles1
Independent1
Info Completeness7/14
Missing: cvss, epss, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

NONECVE-2025-35969
CVE-2025-35969: Uncontrolled search path for some Intel(R) Server Firmware Update Utility Software before version 16.0.12. within Ring 3
Trending: 25
HIGHCVE-2026-43120
RDMA/irdma: Fix double free related to rereg_user_mr
Trending: 20
PRE-CVE
Multiple Vulnerabilities in Intel Software Products
Trending: 20
HIGHCVE-2026-31779
wifi: iwlwifi: mvm: fix potential out-of-bounds read in iwl_mvm_nd_match_info_handler()
Trending: 15
NONECVE-2026-31691
igb: remove napi_synchronize() in igb_down()
Trending: 7

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
May 12, 2026
Discovered by ZDM
May 12, 2026
Updated: product, severity
May 12, 2026

Version History

v2
Last enriched 5h ago
v2Tier C5h ago

Updated product to 'Intel Platform' and changed severity to 'HIGH'.

productseverity
via VulDB
v15h ago

Initial creation