PT-2020-4789 · Intel · Intel High Definition Audio Drivers

Published

2020-11-10

·

Updated

2020-11-24

·

CVE-2020-12307

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Intel(R) High Definition Audio drivers versions prior to 9.21.00.4561
Description: The issue is related to improper permissions in some Intel(R) High Definition Audio drivers, which may allow an authenticated user to potentially enable escalation of privilege via local access. This is due to errors in managing privileges.
Recommendations: For versions prior to 9.21.00.4561, update to version 9.21.00.4561 or later to resolve the issue. As a temporary workaround, consider restricting local access to minimize the risk of exploitation.

Fix

Incorrect Default Permissions

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-05341
CVE-2020-12307

Affected Products

Intel High Definition Audio Drivers