Improper Input Validation in Intel Thunderbolt Drivers
CVE-2023-24463

4.3MEDIUM

Key Information:

Vendor
Intel
Vendor
CVE Published:
14 February 2024

Summary

Improper input validation in Intel Thunderbolt DCH drivers for Windows versions prior to 88 poses risks of information disclosure to unauthenticated users with adjacent access. This flaw can potentially be exploited, allowing unauthorized access to sensitive information. It is crucial for users to ensure they are running the latest versions of the drivers to mitigate these security risks. Full details can be found in the official advisory.

Affected Version(s)

Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88

References

CVSS V3.1

Score:
4.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.