PT-2025-46384 · Intel · Intel Cip
CVE-2025-24299
·
Publicado
2025-11-11
·
Atualizado
2025-11-12
CVSS v3.1
8.8
Alta
| Vetor | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Intel(R) CIP software versions prior to WIN DCA 2.4.0.11001
Description
Insufficient input validation in some Intel(R) CIP software before version WIN DCA 2.4.0.11001 within Ring 3: User Applications may allow an escalation of privilege. An unprivileged software adversary with an authenticated user and a low complexity attack may enable escalation of privilege. This may occur via network access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential issue may impact the confidentiality, integrity, and availability of the vulnerable system.
Recommendations
Update to version WIN DCA 2.4.0.11001 or later.
Correção
RCE
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Intel Cip