PT-2024-10057 · Intel · Intel Arc & Iris Xe Graphics
Sim0Nsecurity
·
Published
2024-05-14
·
Updated
2024-07-03
·
CVE-2024-21864
CVSS v3.1
7.8
High
| Vector | AV:A/AC:H/PR:N/UI:R/S:C/C:L/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Intel(R) Arc(TM) & Iris(R) Xe Graphics software versions prior to 31.0.101.5081
Description
The issue is related to improper neutralization in the graphics software, which may allow an unauthenticated user to potentially enable escalation of privilege via adjacent network access. This could be exploited by a remote attacker to elevate their privileges. The vulnerability is associated with the incorrect neutralization of special elements in the output used by an incoming component.
Recommendations
For versions prior to 31.0.101.5081, update to version 31.0.101.5081 or later to resolve the issue. As a temporary workaround, consider restricting access to the graphics software to minimize the risk of exploitation.
Fix
Improper Neutralization
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Intel Arc & Iris Xe Graphics