Impact
An out‑of‑bounds read flaw in the Intel PROSet/Wireless WiFi Software for Windows can allow kernel mode code to read unintended memory, potentially leading to a crash of the operating system. The CVE entry indicates that the exploit may be triggered without user interaction and requires an unprivileged and unauthenticated attacker. The described impact is limited to availability, with no effect on confidentiality or integrity.
Affected Systems
The vulnerability affects Intel PROSet/Wireless WiFi Software for Windows. No specific version numbers are provided in the advisory, so the vulnerability may exist in any release of the product that contains the affected code. Systems running this software should therefore verify whether they are running a version that contains the fix.
Risk and Exploitability
This flaw is scored at CVSS 7, indicating a high potential for disruption. The EPSS score is less than 1%, suggesting that, so far, the likelihood of exploitation in the wild is very low, and the issue is not listed in the CISA KEV catalog. The attack vector is inferred to be local or remote with an unauthenticated attacker who must know or discover a high‑complexity trigger; no special internal knowledge is required, so the vulnerability is potentially exploitable by a broad set of adversaries.
OpenCVE Enrichment