Lucene search

K
ubuntucveUbuntu.comUB:CVE-2022-26047
HistoryNov 11, 2022 - 12:00 a.m.

CVE-2022-26047

2022-11-1100:00:00
ubuntu.com
ubuntu.com
12
input validation
intel wifi products
unauthenticated user
denial of service

6.5 Medium

CVSS3

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

0.001 Low

EPSS

Percentile

22.0%

Improper input validation for some Intel® PROSet/Wireless WiFi, Intel
vPro® CSME WiFi and Killer™ WiFi products may allow unauthenticated
user to potentially enable denial of service via local access.

Notes

Author Note
mdeslaur It is not clear in the advisory whether updated firmware, or updated drivers are required to fix this issue, or where they are available.

6.5 Medium

CVSS3

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

0.001 Low

EPSS

Percentile

22.0%

Related for UB:CVE-2022-26047