CVE-2024-28956: exploitation status and patch state
CVE-2024-28956 · CVSS 5.6 MEDIUM · EPSS <1%
Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access.
Is CVE-2024-28956 exploited?
Not in the CISA KEV catalog.
EPSS puts exploitation in the next 30 days at <1%.
Public exploit code: none found in monitored sources.