cbcvebase.
CVE-2022-40964
published 2023-08-11

CVE-2022-40964: Improper access control for some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow a privileged user to potentially enable escalation of…

medium6.7CVSS 3.1
AVLACLPRHUINSUCHIHAH
Improper access control for some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow a privileged user to potentially enable escalation of privilege via local access.

Affected

9 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debianfirmware-nonfree< firmware-nonfree 20240610-1 (forky)firmware-nonfree 20240610-1 (forky)
fedoraprojectfedora
fedoraprojectfedora
fedoraprojectfedora
intelkiller< 34.22.116334.22.1163
intelproset_wireless_wifi< 22.20022.200
inteluefi_firmware< 3.2.20.230233.2.20.23023
intel_prosetwireless_wifi_and_killer_wifi_software

CVSS provenance

nvdv3.16.7MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
osv6.7MEDIUM