CVE-2025-9614
Published: Dec 9, 2025
Modified: Dec 10, 2025
Description
An issue was discovered in the PCI Express (PCIe) Integrity and Data Encryption (IDE) specification, where insufficient guidance on re-keying and stream flushing during device rebinding may allow stale write transactions from a previous security context to be processed in a new one. This can lead to unintended data access across trusted domains, compromising confidentiality and integrity.
| Vendor | Product | Versions |
|---|---|---|
PCI-SIG | PCI Express Integrity and Data Encryption (PCIe IDE) Specification | affected 0 - < 6.5-Rev7.0 |
PCI-SIG | PCI Express Integrity and Data Encryption (PCIe IDE) Specification | affected 0 - < 7.1-Rev7.0 |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now