CVE-2026-20887: High severity Intel Intel Vision vulnerability
Improper access control for some Intel Vision software for all versions within Ring 3: User Applications may allow a denial of service. Unprivileged software adversary with an unauthenticated user combined with a low complexity attack may enable remote code execution. This result may potentially occur via network access when attack requirements are not present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (high), integrity (low) and availability (low) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (none) impacts.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-20887?
CVE-2026-20887 has a high severity due to the potential for denial of service and remote code execution.
How do I fix CVE-2026-20887?
To mitigate CVE-2026-20887, ensure all versions of Intel Vision software are updated to the latest security patches provided by Intel.
What kind of attack does CVE-2026-20887 vulnerability allow?
CVE-2026-20887 allows an unprivileged attacker to potentially execute remote code through a low complexity attack.
Which software is affected by CVE-2026-20887?
CVE-2026-20887 affects all versions of Intel Vision software running in Ring 3 user applications.
What is the potential impact of CVE-2026-20887?
The potential impact of CVE-2026-20887 includes service disruption and unauthorized code execution on vulnerable systems.