Buffer Vulnerability in Intel Thunderbolt Drivers for Windows
CVE-2023-24589

6.1MEDIUM

Key Information:

Vendor
Intel
Vendor
CVE Published:
14 February 2024

Summary

The vulnerability arises due to improper buffer restrictions present in certain versions of Intel Thunderbolt DCH drivers for Windows. This issue enables a privileged user with local access to potentially escalate their privilege level, which could facilitate unauthorized actions or access within the operating system. Ensuring that systems utilize the latest versions of Intel Thunderbolt drivers is critical for maintaining security and protecting against exploitation of this flaw.

Affected Version(s)

Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88

References

CVSS V3.1

Score:
6.1
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.