cbcvebase.
CVE-2022-38076
published 2023-08-11

CVE-2022-38076: Improper input validation in some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow an authenticated user to potentially enable escalation…

high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
Improper input validation in some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow an authenticated user to potentially enable escalation of privilege via local access.

Affected

9 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debianfirmware-nonfree< firmware-nonfree 20240610-1 (forky)firmware-nonfree 20240610-1 (forky)
fedoraprojectfedora
fedoraprojectfedora
fedoraprojectfedora
intelkiller< 34.22.116334.22.1163
intelproset_wireless_wifi< 22.20022.200
inteluefi_firmware< 3.2.20.230233.2.20.23023
intel_prosetwireless_wifi_and_killer_wifi_software

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH