Description
Improper buffer restrictions for the Intel(R) NPU Driver for all versions within Ring 3: User Applications may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (none), integrity (low) and availability (high) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (none) impacts.
Published: 2026-08-11
Score: 6.9 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The Intel(R) NPU Driver contains an improper buffer restriction flaw that enables local unprivileged users, who possess an authenticated session, to trigger a denial of service. Exploitation requires no special internal knowledge or user interaction, and involves a low complexity attack. The flaw can crash the driver or the system, causing high availability impact while leaving confidentiality unaffected and integrity low if the driver state is corrupted.

Affected Systems

The flaw is present in all versions of the Intel(R) NPU Driver operating in Ring 3. Intel’s official advisory lists the vulnerable driver as the affected product, with no specific version range disclosed, meaning that any user of the driver in a normal privilege context may be impacted.

Risk and Exploitability

The CVSS base score of 6.9 indicates moderate to high risk, but the EPSS score of less than 1% suggests a low likelihood of exploitation in the wild. The vulnerability is not listed in the CISA KEV catalog. Based on the description, the attack vector is local and requires authentication; an attacker could cause repeated crashes of the driver or the host operating system, leading to service outages.

Generated by OpenCVE AI on August 12, 2026 at 21:52 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the latest Intel NPU Driver update that addresses the buffer restriction issue.
  • If an update is not yet available, disable or remove the NPU driver or any application that relies on it to mitigate the attack surface.
  • Regularly monitor the system for unexpected driver restarts or crashes, and enforce strict access controls to limit unprivileged local user privileges on the device.

Generated by OpenCVE AI on August 12, 2026 at 21:52 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 31 Aug 2026 14:15:00 +0000

Type Values Removed Values Added
First Time appeared Intel neural Processing Unit Driver
CPEs cpe:2.3:a:intel:neural_processing_unit_driver:*:*:*:*:*:linux:*:*
cpe:2.3:a:intel:neural_processing_unit_driver:*:*:*:*:*:windows:*:*
Vendors & Products Intel neural Processing Unit Driver
Metrics cvssV3_1

{'score': 6.1, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H'}


Thu, 13 Aug 2026 11:00:00 +0000

Type Values Removed Values Added
First Time appeared Intel
Intel npu Drivers
Vendors & Products Intel
Intel npu Drivers

Wed, 12 Aug 2026 22:15:00 +0000

Type Values Removed Values Added
Title Intel NPU Driver Denial of Service via Improper Buffer Restriction

Wed, 12 Aug 2026 20:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 11 Aug 2026 17:00:00 +0000

Type Values Removed Values Added
Description Improper buffer restrictions for the Intel(R) NPU Driver for all versions within Ring 3: User Applications may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (none), integrity (low) and availability (high) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (none) impacts.
Weaknesses CWE-119
References
Metrics cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Intel Neural Processing Unit Driver Npu Drivers
cve-icon MITRE

Status: PUBLISHED

Assigner: intel

Published:

Updated: 2026-08-12T19:13:22.093Z

Reserved: 2025-12-18T04:00:20.399Z

Link: CVE-2026-20731

cve-icon Vulnrichment

Updated: 2026-08-12T19:10:06.957Z

cve-icon NVD

Status : Analyzed

Published: 2026-08-11T17:17:50.380

Modified: 2026-08-31T13:56:20.870

Link: CVE-2026-20731

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-13T10:41:00Z

Weaknesses
  • CWE-119

    Improper Restriction of Operations within the Bounds of a Memory Buffer