CVE-2018-3702: High severity intel ite tech consumer infrared driver vulnerability
Published Jun 13, 2019
·Updated
Improper permissions in the installer for the ITE Tech Consumer Infrared Driver for Windows 10 versions before 5.4.3.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected Software
2 affected components
Intel ITE Tech consumer infrared driver<5.4.3.0
Microsoft Windows 10
Remediation
Event History
Jun 13, 2019
CVE Published
via MITRE·03:36 PM
Data Sourced
via MITRE·03:36 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2018-3702?
CVE-2018-3702 is a vulnerability that allows an authenticated user to potentially enable escalation of privilege via local access.
2
What is the severity of CVE-2018-3702?
The severity of CVE-2018-3702 is high, with a severity value of 7.8.
3
How does CVE-2018-3702 affect the ITE Tech* Consumer Infrared Driver?
CVE-2018-3702 affects the ITE Tech* Consumer Infrared Driver version before 5.4.3.0 by allowing an authenticated user to potentially enable escalation of privilege via local access.
4
Is Microsoft Windows 10 affected by CVE-2018-3702?
No, Microsoft Windows 10 is not affected by CVE-2018-3702.
5
How can I fix CVE-2018-3702?
To fix CVE-2018-3702, update the ITE Tech* Consumer Infrared Driver to version 5.4.3.0 or later.