Intel Power Gadget Software Vulnerability Could Lead to Denial of Service
CVE-2023-41234
5MEDIUM
Key Information:
- Vendor
- Intel
- Vendor
- CVE Published:
- 16 May 2024
Summary
A NULL pointer dereference vulnerability exists in the Intel Power Gadget software for Windows, which may allow an authenticated user with local access to the system to trigger a denial of service condition. This vulnerability underscores the importance of securing software that manages power usage and performance, as exploitation could result in significant disruptions and system instability.
Affected Version(s)
Intel(R) Power Gadget software for Windows See references
References
CVSS V3.1
Score:
5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved