Dell Firmware Updates (MINDBREEZE36425)
ID: MINDBREEZE36425
Affected Components: Mindbreeze InSpire, Mindbreeze InSpire SaaS
Severity: 6.5 Medium
Status: Final
First published: August 26, 2025
CVEs: CVE-2025-20103, CVE-2025-20054, CVE-2024-45332, CVE-2024-43420, CVE-2025-20623
Summary
- Insufficient resource pool in the core management mechanism for some Intel® Processors may allow an authenticated user to potentially enable denial of service via local access.
- Uncaught exception in the core management mechanism for some Intel® Processors may allow an authenticated user to potentially enable denial of service via local access.
- Exposure of sensitive information caused by shared microarchitectural predictor state that influences transient execution in the indirect branch predictors for some Intel® Processors may allow an authenticated user to potentially enable information disclosure via local access.
Hotfix Information
Fixed with following versions of Mindbreeze InSpire On-Premises or Mindbreeze InSpire SaaS:
- Mindbreeze InSpire 25.5 Release
- Mindbreeze InSpire SaaS 25.5 Release