PT-2025-46384 · Intel · Intel Cip
Published
2025-11-11
·
Updated
2025-11-12
·
CVE-2025-24299
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Intel(R) CIP software versions prior to WIN DCA 2.4.0.11001
Description
Insufficient input validation in some Intel(R) CIP software before version WIN DCA 2.4.0.11001 within Ring 3: User Applications may allow an escalation of privilege. An unprivileged software adversary with an authenticated user and a low complexity attack may enable escalation of privilege. This may occur via network access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential issue may impact the confidentiality, integrity, and availability of the vulnerable system.
Recommendations
Update to version WIN DCA 2.4.0.11001 or later.
Fix
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Intel Cip