CVE-2024-21823

Updated: 2025-08-20 02:45:38.65614

Description:

Hardware logic with insecure de-synchronization in Intel(R) DSA and Intel(R) IAA for some Intel(R) 4th or 5th generation Xeon(R) processors may allow an authorized user to potentially enable escalation of privilege local access


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x NONE 0.0
CVSS Version 3.x MEDIUM 6.4

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9.2 ESU kernel 5.14.0 6.4 MEDIUM Ignored 2025-09-23 10:55:37 - This vulnerability is local-only with high attack complexity and requires an authorized local user...
CentOS 6 ELS kernel 2.6.32 6.4 MEDIUM Ignored 2024-08-13 14:26:02 Ignored due to low severity
CentOS 7 ELS kernel 3.10.0 6.4 MEDIUM Ignored 2024-08-13 14:26:02 Ignored due to low severity
CentOS 8.4 ELS kernel 4.18.0 6.4 MEDIUM Ignored 2024-08-20 05:26:50 Ignored due to low severity
CentOS 8.5 ELS kernel 4.18.0 6.4 MEDIUM Ignored 2024-08-20 05:26:50 Ignored due to low severity
CentOS Stream 8 ELS kernel 4.18.0 6.4 MEDIUM Ignored 2024-08-20 05:26:50 Ignored due to low severity
CloudLinux 6 ELS kernel 2.6.32 6.4 MEDIUM Ignored 2024-08-13 14:26:02 Ignored due to low severity
CloudLinux 7 ELS kernel 3.10.0 6.4 MEDIUM Ignored 2024-08-13 14:26:02 Ignored due to low severity
Oracle Linux 6 ELS kernel 2.6.32 6.4 MEDIUM Ignored 2024-08-13 14:26:02 Ignored due to low severity