CVE-2022-36377: High severity intel nuc kit wireless adapter driver installer vulnerability
Incorrect default permissions in the installer software for some Intel(r) NUC Kit Wireless Adapter drivers for Windows 10 before version 22.40 may allow an authenticated user to potentially enable escalation of privilege via local access.
Other sources
Insecure inherited permissions in some Intel(R) Wireless Adapter Driver installation software for Intel(R) NUC Kits & Mini PCs before version 22.190.0.3 for Windows may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-36377?
The severity of CVE-2022-36377 is high, with a severity value of 7.8.
How can an authenticated user potentially enable escalation of privilege with CVE-2022-36377?
An authenticated user can potentially enable escalation of privilege by exploiting the incorrect default permissions in the installer software for some Intel NUC Kit Wireless Adapter drivers for Windows 10 before version 22.40 via local access.
Which software is affected by CVE-2022-36377?
The installer software for some Intel NUC Kit Wireless Adapter drivers for Windows 10 before version 22.40 is affected by CVE-2022-36377.
Is the Intel NUC 8 Rugged Kit Nuc8cchkr affected by CVE-2022-36377?
No, the Intel NUC 8 Rugged Kit Nuc8cchkr is not affected by CVE-2022-36377.
How can I fix CVE-2022-36377?
To fix CVE-2022-36377, you can install the latest version (22.40 or later) of the Intel NUC Kit Wireless Adapter drivers for Windows 10.