PT-2022-4222 · Intel · Killer Bluetooth+1

Published

2022-08-09

·

Updated

2022-08-24

·

CVE-2021-26257

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Intel(R) Wireless Bluetooth(R) and Killer(TM) Bluetooth(R) products versions prior to 22.120
Description The issue is related to improper buffer restrictions in the firmware of some Intel(R) Wireless Bluetooth(R) and Killer(TM) Bluetooth(R) products. This may allow an authenticated user to potentially enable denial of service via local access. The exploitation of this issue can also lead to unauthorized access to protected information.
Recommendations For versions prior to 22.120, update to version 22.120 or later to resolve the issue. As a temporary workaround, consider restricting local access to minimize the risk of exploitation.

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2022-05070
CVE-2021-26257

Affected Products

Intel Wireless Bluetooth
Killer Bluetooth