PT-2023-12915 · Intel · Intel Ethernet Controller Administrative Tools

Aobo Wang

·

Published

2023-02-16

·

Updated

2023-08-08

·

CVE-2022-27808

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Intel(R) Ethernet Controller Administrative Tools drivers for Windows versions prior to 1.5.0.2
Description The issue is related to insufficient control flow management in some Intel(R) Ethernet Controller Administrative Tools drivers for Windows, which may allow an authenticated user to potentially enable escalation of privilege via local access.
Recommendations For versions prior to 1.5.0.2, update to version 1.5.0.2 or later to resolve the issue.

Fix

Related Identifiers

CVE-2022-27808

Affected Products

Intel Ethernet Controller Administrative Tools