PT-2025-46433 · Intel · Intel Quickassist Technology
CVE-2025-33000
·
Publicado
2025-11-11
·
Atualizado
2025-11-26
CVSS v3.1
8.8
Alta
| Vetor | AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Intel QuickAssist Technology versions prior to 2.6.0
Description
A flaw exists in Intel QuickAssist Technology that, due to improper input validation within Ring 3 User Applications, could allow an attacker to escalate privileges. A system software adversary with authenticated user access and a low complexity attack may exploit this issue. This requires local access and does not need user interaction. The issue may impact the confidentiality, integrity, and availability of the system.
Recommendations
Update to version 2.6.0 or later.
Correção
RCE
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Intel Quickassist Technology