PT-2025-46384 · Intel · Intel Cip

Published

2025-11-11

·

Updated

2025-11-12

·

CVE-2025-24299

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Intel(R) CIP software versions prior to WIN DCA 2.4.0.11001
Description Insufficient input validation in some Intel(R) CIP software before version WIN DCA 2.4.0.11001 within Ring 3: User Applications may allow an escalation of privilege. An unprivileged software adversary with an authenticated user and a low complexity attack may enable escalation of privilege. This may occur via network access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential issue may impact the confidentiality, integrity, and availability of the vulnerable system.
Recommendations Update to version WIN DCA 2.4.0.11001 or later.

Fix

RCE

Weakness Enumeration

Related Identifiers

CVE-2025-24299

Affected Products

Intel Cip