CVE-2025-14302 - CVE House
Back to Database
Status published High CVE-2025-14302

GIGABYTE|Motherboard - Protection Mechanism Failure

Vulnerability Description

Certain motherboard models developed by GIGABYTE has a Protection Mechanism Failure vulnerability. Because IOMMU was not properly enabled, unauthenticated physical attackers can use a DMA-capable PCIe device to read and write arbitrary physical memory before the OS kernel and its security features are loaded.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-14302

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

intel 600 chipset Motherboard, intel 700 chipset Motherboard, intel 800 chipset Motherboard, AMD 600 chipset motherboard, AMD 800 chipset motherboard, AMD TRX50 chipset motherboard
Vulnerable Versions:
0

Timeline

Official Publish: December 17th, 2025
Last Modified: December 17th, 2025
Added to House: July 22nd, 2026

CVSS Vectors

V3: CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Weaknesses (CWE)