CVE-2025-27032CWE-1257

Improper Access Control Applied to Mirrored or Aliased Memory Regions in Hypervisor

High · published September 24, 2025

CVSS v3.1
7.8
EPSS
0%
Percentile
0.1
In the wild
Unconfirmed
What it is

memory corruption while loading a PIL authenticated VM, when authenticated VM image is loaded without maintaining cache coherency.

The record
Technical detail
CVSS v3.1
7.8 · HIGH
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS v4.0
Not supplied
EPSS
0.00077 · 0.1th percentile
Weakness
CWE-1257 · Improper Access Control Applied to Mirrored or Aliased Memory Regions
Published
2025-09-24T15:33Z
EPSS history
Timeline
  • 24 SEP 15:33Z
    Improper Access Control Applied to Mirrored or Aliased Memory Regions in Hypervisor
    cvelistv5