PT-2019-2460 · Intel · Intel(R) Turbo Boost Max Technology 3.0 Driver

Marius Gabriel Mihai

·

Published

2019-06-11

·

Updated

2023-03-02

·

CVE-2019-0164

CVSS v3.1

7.3

High

VectorAV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Intel(R) Turbo Boost Max Technology 3.0 driver version 1.0.0.1035 and before
Description The issue is related to improper permissions in the installer for the Intel(R) Turbo Boost Max Technology 3.0 driver, which may allow an authenticated user to potentially enable escalation of privilege via local access. This is due to insufficient access control, which can be exploited to elevate privileges.
Recommendations For Intel(R) Turbo Boost Max Technology 3.0 driver version 1.0.0.1035 and before, consider updating to a newer version that addresses the improper permissions issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

BDU:2019-02238
CVE-2019-0164

Affected Products

Intel(R) Turbo Boost Max Technology 3.0 Driver