PT-2020-4915 · Intel · Intel(R) Hid Event Filter Driver

Published

2020-11-10

·

Updated

2020-11-24

·

CVE-2020-12332

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Intel(R) HID Event Filter Driver versions all
Description: The issue is related to improper permissions in the installer for the Intel(R) HID Event Filter Driver. This may allow an authenticated user to potentially enable escalation of privilege via local access. The vulnerability is associated with errors in managing privileges, which could allow an attacker to elevate their privileges.
Recommendations: For all versions, consider restricting access to the installer until a fix is available. As a temporary workaround, ensure that only authorized users have local access to the system to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Preservation of Permissions

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-05490
CVE-2020-12332

Affected Products

Intel(R) Hid Event Filter Driver