Improper Access Control in Intel Thunderbolt Drivers for Windows
CVE-2023-24481

6.3MEDIUM

Key Information:

Vendor
Intel
Vendor
CVE Published:
14 February 2024

Summary

A vulnerability exists in Intel Thunderbolt DCH drivers for Windows that stems from improper access control mechanisms. This issue could allow an authenticated user to exploit the driver to potentially escalate their privileges through local access. This poses significant security risks as it may enable unauthorized actions affecting system integrity and confidentiality. Users are advised to update to the latest driver version to mitigate these risks.

Affected Version(s)

Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88

References

CVSS V3.1

Score:
6.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.