CVE-2023-25951: Input Validation
Published Feb 14, 2024
·Updated
Improper input validation for some Intel(R) PROSet/Wireless and Intel(R) Killer(TM) Wi-Fi software before version 22.240 may allow a privileged user to potentially enable escalation of privilege via local access.
Affected Software
7 affected components
All of the following
Any of the following
Intel Killer<3.1423.712
Intel Proset\/wireless<22.240
Any of the following
Intel Killer Wi-fi 6e Ax1675
Intel Killer Wi-fi 6e Ax1690
Intel Proset Wi-fi 6e Ax210
Intel Wi-fi 6e Ax211
Intel Wi-fi 6e Ax411
Event History
Feb 14, 2024
CVE Published
via MITRE·01:37 PM
Data Sourced
via MITRE·01:37 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-25951?
CVE-2023-25951 is considered to have a moderate severity level due to the potential for privilege escalation.
2
How do I fix CVE-2023-25951?
To fix CVE-2023-25951, update your Intel PROSet/Wireless and Intel Killer Wi-Fi software to version 22.240 or later.
3
Who is affected by CVE-2023-25951?
CVE-2023-25951 affects users of Intel PROSet/Wireless and Intel Killer Wi-Fi software versions prior to 22.240.
4
What could an attacker achieve by exploiting CVE-2023-25951?
An attacker exploiting CVE-2023-25951 could potentially escalate privileges on the affected system.
5
Is local access required to exploit CVE-2023-25951?
Yes, local access is required to exploit CVE-2023-25951.