cbcvebase.

Intel Quickassist Technology vulnerabilities

37 known vulnerabilities affecting intel/quickassist_technology.

Total CVEs
37
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH15MEDIUM19LOW3

Vulnerabilities

Page 1 of 2
CVE-2025-33000P3HIGHCVSS 8.8fixed in 2.6.0-00182025-11-11
CVE-2025-33000 [HIGH] CWE-20 CVE-2025-33000: Improper input validation for some Intel QuickAssist Technology before version 2.6.0 within Ring 3: Improper input validation for some Intel QuickAssist Technology before version 2.6.0 within Ring 3: User Applications may allow an escalation of privilege. System software adversary with an authenticated user combined with a low complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requireme
nvd
CVE-2026-20767P3HIGHCVSS 7.8fixed in 1.13.0-00212026-05-12
CVE-2026-20767 [HIGH] CWE-20 CVE-2026-20767: Improper input validation for some Intel(R) QAT software drivers for Windows before version 1.13 wit Improper input validation for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable escalation of privilege. This result may potentially occur via local access wh
nvd
CVE-2026-20714P3HIGHCVSS 7.8fixed in 1.13.0-00212026-05-12
CVE-2026-20714 [HIGH] CWE-787 CVE-2026-20714: Out-of-bounds write for some Intel(R) QAT software drivers for Windows before version 1.13 within Ri Out-of-bounds write for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User Applications may allow a escalation of privilege. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable escalation of privilege. This result may potentially occur via local access when att
nvd
CVE-2025-27713P3HIGHCVSS 7.8fixed in 2.6.0-00182025-11-11
CVE-2025-27713 [HIGH] CWE-787 CVE-2025-27713: Out-of-bounds write for some Intel(R) QAT Windows software before version 2.6.0. within Ring 3: User Out-of-bounds write for some Intel(R) QAT Windows software before version 2.6.0. within Ring 3: User Applications may allow an escalation of privilege. System software adversary with an authenticated user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requiremen
nvd
CVE-2023-32641P3HIGHCVSS 8.8fixed in 1.0.40-000042023-11-14
CVE-2023-32641 [HIGH] CWE-20 CVE-2023-32641: Improper input validation in firmware for Intel(R) QAT before version QAT20.L.1.0.40-00004 may allow Improper input validation in firmware for Intel(R) QAT before version QAT20.L.1.0.40-00004 may allow escalation of privilege and denial of service via adjacent access.
nvd
CVE-2023-28741P3HIGHCVSS 7.8≥ 1.0, < 1.10≥ 2.0, < 2.042023-11-14
CVE-2023-28741 [HIGH] CWE-120 CVE-2023-28741: Buffer overflow in some Intel(R) QAT drivers for Windows - HW Version 1.0 before version 1.10 may al Buffer overflow in some Intel(R) QAT drivers for Windows - HW Version 1.0 before version 1.10 may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2024-31858P3HIGHCVSS 7.8fixed in 2.2.0-00122025-02-12
CVE-2024-31858 [HIGH] CWE-787 CVE-2024-31858: Out-of-bounds write for some Intel(R) QuickAssist Technology software before version 2.2.0 may allow Out-of-bounds write for some Intel(R) QuickAssist Technology software before version 2.2.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2024-29223P3HIGHCVSS 7.8fixed in 2.2.0-00122025-02-12
CVE-2024-29223 [HIGH] CWE-427 CVE-2024-29223: Uncontrolled search path for some Intel(R) QuickAssist Technology software before version 2.2.0 may Uncontrolled search path for some Intel(R) QuickAssist Technology software before version 2.2.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2022-21804P3HIGHCVSS 7.8fixed in 1.9.0.-00082023-05-10
CVE-2022-21804 [HIGH] CWE-787 CVE-2022-21804: Out-of-bounds write in software for the Intel QAT Driver for Windows before version 1.9.0-0008 may a Out-of-bounds write in software for the Intel QAT Driver for Windows before version 1.9.0-0008 may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2020-12333P3HIGHCVSS 7.8fixed in 1.7.l.4.10.02020-11-12
CVE-2020-12333 [HIGH] CWE-522 CVE-2020-12333: Insufficiently protected credentials in the Intel(R) QAT for Linux before version 1.7.l.4.10.0 may a Insufficiently protected credentials in the Intel(R) QAT for Linux before version 1.7.l.4.10.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2022-36397P3HIGHCVSS 7.8fixed in 1.6fixed in 4.172023-02-16
CVE-2022-36397 [HIGH] CWE-276 CVE-2022-36397: Incorrect default permissions in the software installer for some Intel(R) QAT drivers for Linux befo Incorrect default permissions in the software installer for some Intel(R) QAT drivers for Linux before version 4.17 may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2023-28740P3HIGHCVSS 7.8≥ 1.0, < 1.10≥ 2.0, < 2.042023-11-14
CVE-2023-28740 [HIGH] CWE-427 CVE-2023-28740: Uncontrolled search path element in some Intel(R) QAT drivers for Windows - HW Version 2.0 before ve Uncontrolled search path element in some Intel(R) QAT drivers for Windows - HW Version 2.0 before version 2.0.4 may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2022-41699P3HIGHCVSS 7.8fixed in 1.9.02023-05-10
CVE-2022-41699 [HIGH] CWE-732 CVE-2022-41699: Incorrect permission assignment for critical resource in some Intel(R) QAT drivers for Windows befor Incorrect permission assignment for critical resource in some Intel(R) QAT drivers for Windows before version 1.9.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2022-40972P4HIGHCVSS 7.8fixed in 1.9.02023-05-10
CVE-2022-40972 [HIGH] CWE-284 CVE-2022-40972: Improper access control in some Intel(R) QAT drivers for Windows before version 1.9.0 may allow an a Improper access control in some Intel(R) QAT drivers for Windows before version 1.9.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2022-37340P4HIGHCVSS 7.3fixed in 1.6fixed in 4.172023-02-16
CVE-2022-37340 [HIGH] CWE-427 CVE-2022-37340: Uncontrolled search path in some Intel(R) QAT drivers for Windows before version 1.6 may allow an au Uncontrolled search path in some Intel(R) QAT drivers for Windows before version 1.6 may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2026-20782P4MEDIUMCVSS 6.6fixed in 1.13.0-00212026-05-12
CVE-2026-20782 [MEDIUM] CWE-120 CVE-2026-20782: Buffer overflow for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3 Buffer overflow for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User Applications may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via local access when attack requiremen
nvd
CVE-2025-32732P4MEDIUMCVSS 6.6fixed in 2.6.0-00182025-11-11
CVE-2025-32732 [MEDIUM] CWE-120 CVE-2025-32732: Buffer overflow for some Intel(R) QAT Windows software before version 2.6.0. within Ring 3: User App Buffer overflow for some Intel(R) QAT Windows software before version 2.6.0. within Ring 3: User Applications may allow a denial of service. System software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via local access when attack requirements are present w
nvd
CVE-2026-20905P4MEDIUMCVSS 6.6fixed in 2.6.0-00182026-05-12
CVE-2026-20905 [MEDIUM] CWE-20 CVE-2026-20905: Improper input validation for some Intel(R) QAT software drivers for Windows before version 2.6 with Improper input validation for some Intel(R) QAT software drivers for Windows before version 2.6 within Ring 3: User Applications may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via local access when attack re
nvd
CVE-2026-20717P4MEDIUMCVSS 6.6fixed in 1.13.0-00212026-05-12
CVE-2026-20717 [MEDIUM] CWE-20 CVE-2026-20717: Improper input validation for some Intel(R) QAT software drivers for Windows before version 1.13 wit Improper input validation for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User Applications may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via local access when attack r
nvd
CVE-2025-24519P4MEDIUMCVSS 5.5fixed in 2.6.0-00182025-11-11
CVE-2025-24519 [MEDIUM] CWE-120 CVE-2025-24519: Buffer overflow for some Intel(R) QAT Windows software before version 2.6.0. within Ring 3: User App Buffer overflow for some Intel(R) QAT Windows software before version 2.6.0. within Ring 3: User Applications may allow an escalation of privilege. System software adversary with an authenticated user combined with a low complexity attack may enable data manipulation. This result may potentially occur via local access when attack requirements are no
nvd
Intel Quickassist Technology vulnerabilities | cvebase