CVE-2026-59130
5.6
Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N
Exploitability: 1.1 / Impact: 4.0
Source: secure@microsoft.com (Secondary)
Description
No cwe for this issue in AMD Zen allows an authorized attacker to disclose information locally.
Affected (23)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 10.0.14393.9418 | |
| Before 10.0.17763.9115 | |
| Before 10.0.19044.7663 | |
| Before 10.0.19045.7663 | |
| Before 10.0.22631.7517 | |
| Before 10.0.26100.9106 | |
| Before 10.0.26200.9106 | |
| Before 10.0.28000.2704 | |
| Version r2 | |
| Before 10.0.14393.9418 | |
| Before 10.0.17763.9115 | |
| Before 10.0.20348.5440 | |
| Before 10.0.26100.33222 |
Related CWEs
CWE-1303
Non-Transparent Sharing of Microarchitectural Resources
Hardware structures shared across execution contexts (e.g., caches and branch predictors) can violate the expected architecture isolation between contexts.
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
References (1)
Source: secure@microsoft.com
PatchVendor Advisory
Timeline
No history available yet.