PT-2021-2091 · Intel · Intel Proset/Wireless Wifi

Published

2021-02-09

·

Updated

2021-02-23

·

CVE-2020-24458

CVSS v3.1

5.2

Medium

VectorAV:A/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:L
Name of the Vulnerable Software and Affected Versions: Intel PROSet/Wireless WiFi and Killer drivers versions prior to 22.0
Description: The issue exists due to incomplete cleanup of temporary or auxiliary resources in the Intel PROSet/Wireless WiFi utility, potentially allowing a remote attacker to disclose protected information or cause a denial of service. A privileged user may enable information disclosure and denial of service via adjacent access.
Recommendations: For versions prior to 22.0, update to version 22.0 or later to resolve the issue. As a temporary workaround, consider restricting access to sensitive information and implementing additional security measures to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2021-00943
CVE-2020-24458

Affected Products

Intel Proset/Wireless Wifi