PT-2024-21006 · Intel+1 · Intel Proset/Wireless+2

Published

2024-11-13

·

Updated

2024-11-15

·

CVE-2024-25563

CVSS v4.0

4.6

Medium

VectorAV:L/AC:L/AT:N/PR:H/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Name of the Vulnerable Software and Affected Versions Intel(R) PROSet/Wireless Software and Intel(R) Killer(TM) Wi-Fi versions prior to 23.40
Description The issue is related to improper initialization in firmware, which may allow a privileged user to potentially enable information disclosure via local access.
Recommendations For versions prior to 23.40, update to version 23.40 or later to resolve the issue.

Fix

Improper Initialization

Weakness Enumeration

Related Identifiers

CVE-2024-25563

Affected Products

Debian
Intel Killer Wi-Fi
Intel Proset/Wireless