The System-On-a-Chip (SoC) does not properly isolate shared resources between trusted and untrusted agents.
Volume of CVEs assigned to CWE-1189 and their average CVSS base score over time.
Top CVEs that have been assigned this CWE. A single CVE can have multiple CWE assignments, though many have just one.
6 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-54518HIGH Improper isolation of shared resources within the CPU operation cache on Zen 2-based products could allow an attacker to corrupt instructions executed at a different privilege leve | May 15, 2026 | 7.0 | 32 | NO | NO |
CVE-2024-36332MEDIUM Improper isolation of GPU HW register space could allow a privileged attacker in malicious Guest Virtual Machine (VM) to perform unauthorized access to specific victim range of GPU | May 15, 2026 | 6.8 | 26 | NO | NO |
CVE-2023-31325HIGH Improper isolation of shared resources on System-on-a-chip (SOC) could a privileged attacker to tamper with the contents of the PSP reserved DRAM region potentially resulting in lo | Sep 6, 2025 | 7.2 | 24 | NO | NO |
CVE-2023-49141HIGH Improper isolation in some Intel(R) Processors stream cache mechanism may allow an authenticated user to potentially enable escalation of privilege via local access. | Aug 14, 2024 | 7.8 | 22 | NO | NO |
CVE-2023-42667HIGH Improper isolation in the Intel(R) Core(TM) Ultra Processor stream cache mechanism may allow an authenticated user to potentially enable escalation of privilege via local access. | Aug 14, 2024 | 7.8 | 21 | NO | NO |
CVE-2025-54514MEDIUM Improper isolation of shared resources on a system on a chip by a malicious local attacker with high privileges could potentially lead to a partial loss of integrity. | Feb 10, 2026 | 4.8 | 17 | NO | NO |
Exploit activity across CVEs assigned to this CWE, including CVEs that carry other CWE assignments.
Social posts that mention CVE IDs assigned to this CWE. This is assigned-CVE activity, not mentions of the CWE label itself.
Media articles that mention CVE IDs assigned to this CWE. This is assigned-CVE coverage, not mentions of the CWE label itself.