Improper Access Control in Intel Thunderbolt Drivers for Windows
CVE-2023-24481
6.3MEDIUM
Key Information:
- Vendor
- Intel
- Vendor
- CVE Published:
- 14 February 2024
Summary
A vulnerability exists in Intel Thunderbolt DCH drivers for Windows that stems from improper access control mechanisms. This issue could allow an authenticated user to exploit the driver to potentially escalate their privileges through local access. This poses significant security risks as it may enable unauthorized actions affecting system integrity and confidentiality. Users are advised to update to the latest driver version to mitigate these risks.
Affected Version(s)
Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88
References
CVSS V3.1
Score:
6.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved