Description
Out-of-bounds read for the Intel(R) NPU Driver for all versions within Ring 3: User Applications may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (none), integrity (low) and availability (high) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (none) impacts.
Published: 2026-08-11
Score: 6.9 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability is an out‑of‑bounds read in the Intel NPU Driver that can be triggered by unprivileged local software. Exploiting the flaw may result in a crash of the driver or the associated service, causing an interruption of the system’s normal operation. The weakness, identified as CWE-125, provides no confidentiality gain, introduces a low‑level integrity effect, but delivers a high‑level availability impact as described in the advisory.

Affected Systems

All versions of the Intel(R) NPU Driver are susceptible to the issue. The affected component is the driver code executing in user space (Ring 3). No specific vendor version numbering is provided, so any deployment of the driver remains at risk until a patch is applied.

Risk and Exploitability

With a CVSS score of 6.9 the vulnerability sits in the medium range, and the EPSS score of less than 1 % indicates a very low probability of exploitation at the time of this assessment. The flaw is not listed in the CISA KEV catalog, which suggests limited or no known widespread exploitation. The attack requires local access by an authenticated user, low technical skill, and no special internal knowledge; it can be performed without user interaction, making a local denial of service straightforward to achieve once the driver is in play.

Generated by OpenCVE AI on August 12, 2026 at 21:24 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade the Intel NPU Driver to a version that contains the fix for the out‑of‑bounds read.
  • If a patch is not yet released, disable or unload the driver for non‑essential services to reduce exposure to local attackers.
  • Restrict unprivileged user access to the system’s driver interfaces and monitor system logs for abnormal read attempts that may indicate exploitation attempts.

Generated by OpenCVE AI on August 12, 2026 at 21:24 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 13 Aug 2026 10:45:00 +0000

Type Values Removed Values Added
First Time appeared Intel
Intel npu Drivers
Vendors & Products Intel
Intel npu Drivers

Wed, 12 Aug 2026 21:45:00 +0000

Type Values Removed Values Added
Title Out‑of‑Bounds Read in Intel NPU Driver Leading to Denial of Service

Wed, 12 Aug 2026 16:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 11 Aug 2026 17:00:00 +0000

Type Values Removed Values Added
Description Out-of-bounds read for the Intel(R) NPU Driver for all versions within Ring 3: User Applications may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (none), integrity (low) and availability (high) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (none) impacts.
Weaknesses CWE-125
References
Metrics cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Intel Npu Drivers
cve-icon MITRE

Status: PUBLISHED

Assigner: intel

Published:

Updated: 2026-08-12T15:38:10.257Z

Reserved: 2025-12-19T04:00:14.867Z

Link: CVE-2026-20786

cve-icon Vulnrichment

Updated: 2026-08-12T15:38:03.763Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-08-11T17:17:53.040

Modified: 2026-08-12T20:54:11.500

Link: CVE-2026-20786

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-13T10:30:04Z

Weaknesses