Impact
A device driver in Intel PROSet/Wireless WiFi Software performs an improper condition check while operating in Ring 2, which can be exploited by an attacker to cause a denial of service. The flaw does not affect confidentiality or integrity; it only impacts availability. According to the CVE, a network adversary with unauthenticated access and a low‑complexity attack can trigger the failure without requiring user interaction or special internal knowledge.
Affected Systems
The affected product is Intel PROSet/Wireless WiFi Software. Specific version numbers are not disclosed in the advisory, so all releases of this driver that use the vulnerable code path are potentially impacted.
Risk and Exploitability
The CVSS score of 8.3 indicates a high severity of the vulnerability, while the EPSS score of less than 1 % shows that the likelihood of exploitation is very low at present. Because the vulnerability is not listed in the CISA KEV catalog, there are no known widespread attacks. The attack seems to rely on a local or network‑based trigger that does not require privileged access, implying that the threat can be reached from the network by an unauthenticated adversary. Overall, the risk is moderate but the impact remains high if exploited.
OpenCVE Enrichment