Denial of Service Vulnerability in Windows OS Driver Software by Intel
CVE-2025-36510

6.8MEDIUM

What is CVE-2025-36510?

A vulnerability exists in the Display Virtualization for Windows OS driver software due to improper buffer restrictions in Ring 2. This flaw may allow an unprivileged attacker with authenticated access to execute a low-complexity attack leading to a denial of service condition. The attack may be executed through local access, and no special internal knowledge or user interaction is required, enhancing its potential threat. The impact primarily affects the availability of the system, underscoring the importance of timely updates and patches.

Affected Version(s)

Display Virtualization for Windows OS driver software See references

References

CVSS V4

Score:
6.8
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.