Impact
An out-of-bounds write vulnerability exists in Intel PROSet/Wireless WiFi Software for Windows, allowing an adversary to trigger a denial of service. The flaw resides in the device driver at ring 2, where unchecked memory writes can corrupt kernel state and bring the device driver to a halt. While the vulnerability does not directly affect data confidentiality or integrity, it can cause the WiFi service to fail, leading to a loss of network connectivity for the host machine. The CVSS score of 6.9 indicates a moderate severity for availability impacts.
Affected Systems
Affected components are Intel PROSet/Wireless WiFi Software drivers installed on Windows operating systems. No specific version range is provided in the data, so all installations of this driver should be considered potentially vulnerable until a vendor update is released.
Risk and Exploitability
The EPSS score of less than 1% suggests that exploitation attempts are unlikely to be widespread at present. The vulnerability is not listed in the CISA KEV catalog, further indicating low to moderate risk in the current threat landscape. The likely attack vector is a remote network-based intrusion performed by an unauthenticated attacker; the description infers that network adversaries can trigger the denial of service without special internal knowledge, though the exploit requires the target system to be active and listening for WiFi traffic. A low complexity attack implies that the exploitation could be automated, but the overall probability remains low due to the absence of active exploitation feeds.
OpenCVE Enrichment