CVE-2023-28741

Severity CVSS v4.0:
Pending analysis
Type:
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Publication date:
14/11/2023
Last modified:
30/11/2023

Description

Buffer overflow in some Intel(R) QAT drivers for Windows - HW Version 1.0 before version 1.10 may allow an authenticated user to potentially enable escalation of privilege via local access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:intel:quickassist_technology_library:*:*:*:*:*:*:*:* 22.07.1 (excluding)
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:quickassist_technology:*:*:*:*:*:windows:*:* 1.0 (including) 1.10 (excluding)
cpe:2.3:o:intel:quickassist_technology_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:quickassist_technology:*:*:*:*:*:windows:*:* 2.0 (including) 2.04 (excluding)
cpe:2.3:o:intel:quickassist_technology_firmware:-:*:*:*:*:*:*:*