6.7

CVE-2022-40964

Improper access control for some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow a privileged user to potentially enable escalation of privilege via local access.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Intel ≫ Killer Version < 34.22.1163
   Intel ≫ Killer Wi-fi 6 Ax1650i/s Version -
   Intel ≫ Killer Wi-fi 6e Ax1675i/s Version -
   Intel ≫ Killer Wi-fi 6e Ax1675x/w Version -
   Intel ≫ Killer Wi-fi 6e Ax1690i/s Version -
   Intel ≫ Killer Wireless-ac 1550i/s Version -
   Intel ≫ Wi-fi 6 Ax201 Version -
   Intel ≫ Wi-fi 6e Ax210 Version -
   Intel ≫ Wi-fi 6e Ax211 Version -
   Intel ≫ Wi-fi 6e Ax411 Version -
   Intel ≫ Wireless-ac 9461 Version -
   Intel ≫ Wireless-ac 9462 Version -
   Intel ≫ Wireless-ac 9560 Version -
Intel ≫ Proset/wireless Wifi Version < 22.200
   Intel ≫ Killer Wi-fi 6 Ax1650i/s Version -
   Intel ≫ Killer Wi-fi 6e Ax1675i/s Version -
   Intel ≫ Killer Wi-fi 6e Ax1675x/w Version -
   Intel ≫ Killer Wi-fi 6e Ax1690i/s Version -
   Intel ≫ Killer Wireless-ac 1550i/s Version -
   Intel ≫ Wi-fi 6 Ax201 Version -
   Intel ≫ Wi-fi 6e Ax210 Version -
   Intel ≫ Wi-fi 6e Ax211 Version -
   Intel ≫ Wi-fi 6e Ax411 Version -
   Intel ≫ Wireless-ac 9461 Version -
   Intel ≫ Wireless-ac 9462 Version -
   Intel ≫ Wireless-ac 9560 Version -
Intel ≫ Uefi Firmware Version < 3.2.20.23023
   Intel ≫ Killer Wi-fi 6 Ax1650i/s Version -
   Intel ≫ Killer Wi-fi 6e Ax1675i/s Version -
   Intel ≫ Killer Wi-fi 6e Ax1675x/w Version -
   Intel ≫ Killer Wi-fi 6e Ax1690i/s Version -
   Intel ≫ Killer Wireless-ac 1550i/s Version -
   Intel ≫ Wi-fi 6 Ax201 Version -
   Intel ≫ Wi-fi 6e Ax210 Version -
   Intel ≫ Wi-fi 6e Ax211 Version -
   Intel ≫ Wi-fi 6e Ax411 Version -
   Intel ≫ Wireless-ac 9461 Version -
   Intel ≫ Wireless-ac 9462 Version -
   Intel ≫ Wireless-ac 9560 Version -
Fedoraproject ≫ Fedora Version 37
Fedoraproject ≫ Fedora Version 38
Fedoraproject ≫ Fedora Version 39
Debian ≫ Debian Linux Version 10.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.24% 0.157
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 6.7 0.8 5.9
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Intel 7.9 1.5 5.8
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:H/A:H
CWE-284 Improper Access Control

The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.

http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00766.html
Patch
Vendor Advisory
https://lists.debian.org/debian-lts-announce/2023/09/msg00043.html
Third Party Advisory
Mailing List
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/HUCYUR4WBTELCRHELISJ3RMZVHKIV5TN/
Mailing List
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/K24OJT4AVMNND7LBTC2ZDDTE6DJHAKB4/
Mailing List
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/Y76A3PLHIQCEPESB4XVBV5SRRXQEZ5JY/
Mailing List