PT-2025-46384 · Intel · Intel Cip

CVE-2025-24299

·

Publicado

2025-11-11

·

Atualizado

2025-11-12

CVSS v3.1

8.8

Alta

VetorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Intel(R) CIP software versions prior to WIN DCA 2.4.0.11001
Description Insufficient input validation in some Intel(R) CIP software before version WIN DCA 2.4.0.11001 within Ring 3: User Applications may allow an escalation of privilege. An unprivileged software adversary with an authenticated user and a low complexity attack may enable escalation of privilege. This may occur via network access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential issue may impact the confidentiality, integrity, and availability of the vulnerable system.
Recommendations Update to version WIN DCA 2.4.0.11001 or later.

Correção

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-24299

Produtos afetados

Intel Cip