CVE-2024-36294: High severity intel driver & support assistant vulnerability
Published Nov 13, 2024
·Updated
Insecure inherited permissions for some Intel(R) DSA software before version 24.3.26.8 may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected Software
2 affected components
Intel DSA Software<24.3.26.8
Intel Driver \& Support Assistant<24.3.26.8
Event History
Nov 13, 2024
CVE Published
via MITRE·09:11 PM
Data Sourced
via MITRE·09:11 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
May 25, 57072
Event
via NVD·09:47 PM
Frequently Asked Questions
1
What is the severity of CVE-2024-36294?
CVE-2024-36294 is rated as a high severity vulnerability due to its potential for privilege escalation.
2
How do I fix CVE-2024-36294?
To fix CVE-2024-36294, upgrade to Intel DSA software version 24.3.26.8 or later.
3
Who is affected by CVE-2024-36294?
CVE-2024-36294 affects users of Intel DSA software prior to version 24.3.26.8.
4
What is the impact of CVE-2024-36294?
The impact of CVE-2024-36294 includes the potential for an authenticated user to escalate their privileges on the system.
5
Is there a workaround for CVE-2024-36294?
Currently, there are no known workarounds for CVE-2024-36294, and upgrading is recommended.