PT-2021-12886 · Intel · Intel Proset/Wireless Wifi+1

Published

2021-11-17

·

Updated

2021-11-21

·

CVE-2021-0069

CVSS v3.1

6.5

Medium

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Intel(R) PROSet/Wireless WiFi (affected versions not specified) Killer(TM) WiFi (affected versions not specified)
Description: The issue is related to improper input validation in firmware, which may allow an unauthenticated user to potentially enable denial of service via adjacent access. This affects some Intel(R) PROSet/Wireless WiFi in multiple operating systems and some Killer(TM) WiFi in Windows 10.
Recommendations: For Intel(R) PROSet/Wireless WiFi, update the firmware to a version that includes input validation fixes. For Killer(TM) WiFi in Windows 10, update the driver to a version that includes input validation fixes. As a temporary workaround, consider restricting access to adjacent networks to minimize the risk of exploitation.

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-0069

Affected Products

Intel Proset/Wireless Wifi
Killer Wifi