Description
Time-of-check time-of-use race condition for the Intel(R) NPU Driver for Windows for all versions within Ring 1: Device Drivers may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a high complexity attack may enable denial of service. This result may potentially occur via local access when attack requirements are present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (none), integrity (low) and availability (high) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (none) impacts.
Published: 2026-08-11
Score: 5.8 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A race condition that occurs between a check and a subsequent use in the Intel NPU Driver for Windows allows an unprivileged local user, who has authenticated to the system, to trigger a denial‑of‑service condition. The flaw does not expose data, but it can compromise system availability and, to a limited extent, integrity. The vulnerability is catalogued as a time‑of‑check time‑of‑use issue (CWE‑367). The exploitation requires a high‑complexity attack but does not require user interaction. The resulting impact is high availability loss with no direct confidentiality breach.

Affected Systems

The flaw affects all versions of the Intel(R) NPU Driver for Windows that operate at Ring 1. Each Windows system that installs or runs the NPU driver under these conditions is susceptible, regardless of the specific Windows version.

Risk and Exploitability

The CVSS score of 5.8 places the vulnerability in the moderate range, while the EPSS score of less than 1% indicates a low probability of exploitation in the wild. The vulnerability is not listed in the CISA KEV catalog. The attack vector is local; an attacker must have local authenticated access but does not need elevated privileges. Because the flaw requires high attack complexity and no special knowledge, widespread exploitation is unlikely but not impossible in environments where the NPU driver is frequently loaded by unprivileged users.

Generated by OpenCVE AI on August 12, 2026 at 21:19 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Install the latest Intel NPU Driver update as announced in Intel Security Advisory SA‑01456
  • Limit unprivileged local accounts from loading the NPU driver by configuring group policies or disabling the driver through Device Manager when it is not required
  • Monitor Windows Event Logs for driver crashes or system instability that could indicate exploitation attempts

Generated by OpenCVE AI on August 12, 2026 at 21:19 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 13 Aug 2026 11:00:00 +0000

Type Values Removed Values Added
First Time appeared Intel
Intel npu Driver For Windows
Vendors & Products Intel
Intel npu Driver For Windows

Thu, 13 Aug 2026 00:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 12 Aug 2026 21:45:00 +0000

Type Values Removed Values Added
Title Race Condition in Intel NPU Driver Allows Unprivileged Local Denial of Service

Tue, 11 Aug 2026 17:00:00 +0000

Type Values Removed Values Added
Description Time-of-check time-of-use race condition for the Intel(R) NPU Driver for Windows for all versions within Ring 1: Device Drivers may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a high complexity attack may enable denial of service. This result may potentially occur via local access when attack requirements are present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (none), integrity (low) and availability (high) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (none) impacts.
Weaknesses CWE-367
References
Metrics cvssV4_0

{'score': 5.8, 'vector': 'CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:N/VC:N/VI:L/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Intel Npu Driver For Windows
cve-icon MITRE

Status: PUBLISHED

Assigner: intel

Published:

Updated: 2026-08-12T15:30:44.394Z

Reserved: 2025-12-19T04:00:14.884Z

Link: CVE-2026-20908

cve-icon Vulnrichment

Updated: 2026-08-12T15:30:37.838Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-08-11T17:17:54.727

Modified: 2026-08-12T20:54:11.500

Link: CVE-2026-20908

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-13T10:40:31Z

Weaknesses
  • CWE-367

    Time-of-check Time-of-use (TOCTOU) Race Condition