ZDI-24-1613: Intel Driver & Support Assistant Log Folder Link Following Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of Intel Driver & Support Assistant. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2024-36488.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-24-1613?
The severity of ZDI-24-1613 is classified as a medium risk due to its potential for local privilege escalation.
How do I fix ZDI-24-1613?
To fix ZDI-24-1613, update the Intel Driver & Support Assistant to the latest version provided by Intel.
Who is affected by ZDI-24-1613?
ZDI-24-1613 affects users of the Intel Driver & Support Assistant with installations that have not been updated.
Can ZDI-24-1613 be exploited remotely?
No, ZDI-24-1613 requires local access to execute low-privileged code before exploitation.
What type of attack is associated with ZDI-24-1613?
ZDI-24-1613 is associated with local privilege escalation attacks.