CVE Vulnerabilities

CVE-2026-20709

Use of Default Cryptographic Key

Published: Apr 08, 2026 | Modified: Apr 08, 2026
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
6.6 MODERATE
CVSS:3.1/AV:P/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:N
Ubuntu
root.io logo minimus.io logo echo.ai logo

Use of Default Cryptographic Key in the hardware for some Intel(R) Pentium(R) Processor Silver Series, Intel(R) Celeron(R) Processor J Series, Intel(R) Celeron(R) Processor N Series may allow an escalation of privilege. Hardware reverse engineer adversary with a privileged user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via physical access when attack requirements are present with special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (high), integrity (none) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (high), integrity (high) and availability (none) impacts.

Weakness

The product uses a default cryptographic key for potentially critical functionality.

Potential Mitigations

References