CVE-2022-38076
published 2023-08-11CVE-2022-38076: Improper input validation in some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow an authenticated user to potentially enable escalation…
high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
Improper input validation in some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | firmware-nonfree | < firmware-nonfree 20240610-1 (forky) | firmware-nonfree 20240610-1 (forky) |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| intel | killer | < 34.22.1163 | 34.22.1163 |
| intel | proset_wireless_wifi | < 22.200 | 22.200 |
| intel | uefi_firmware | < 3.2.20.23023 | 3.2.20.23023 |
| intel_proset | wireless_wifi_and_killer_wifi_software | — | — |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH