CVE-2017-5717

HIGH

Intel Graphics Driver - Privilege Escalation

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2017-5717. PoCs published by Google Security Research.

AI-analyzed exploit summary This exploit leverages a type confusion vulnerability in the Intel Content Protection HECI Service, allowing an attacker to elevate privileges to SYSTEM by manipulating a DCOM object. The PoC demonstrates arbitrary memory access via a crafted SAFEARRAY structure passed as a BSTR, leading to potential code execution.

Description

Type Confusion in Content Protection HECI Service in Intel Graphics Driver allows unprivileged user to elevate privileges via local access.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Google Security Research · textdoswindows
https://www.exploit-db.com/exploits/43373

This exploit leverages a type confusion vulnerability in the Intel Content Protection HECI Service, allowing an attacker to elevate privileges to SYSTEM by manipulating a DCOM object. The PoC demonstrates arbitrary memory access via a crafted SAFEARRAY structure passed as a BSTR, leading to potential code execution.

Classification
Working Poc 90%
Attack Type
Lpe
Complexity
Complex
Reliability
Reliable
Target: Intel Content Protection HECI Service version 9.0.2.117
No auth needed
Prerequisites: Windows 10 with Intel Content Protection HECI Service installed · Debugger attached to IntelCpHeciSvc.exe
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (2)

Core 2
Core References
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/43373/

Scores

CVSS v3 7.8
EPSS 0.0144
EPSS Percentile 69.7%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-704
Status published
Products (8)
intel/graphics_driver 15.33
intel/graphics_driver 15.36
intel/graphics_driver 15.40
intel/graphics_driver 15.45
intel/graphics_driver 15.46
intel/graphics_driver 15.47
intel/graphics_driver 15.49
Intel Corporation/Intel Graphics Driver 15.49/15.47/15.46/15.45/15.40/15.36/15.33
Published Dec 12, 2017
Tracked Since Feb 18, 2026