CVE-2024-28049
MEDIUMIntel Killer < 23.40.0 - Improper Input Validation
Title source: ruleDescription
Improper input validation in firmware for some Intel(R) PROSet/Wireless Software and Intel(R) Killer(TM) Wi-Fi wireless products before version 23.40 may allow an unauthenticated user to enable denial of service via adjacent access.
Scores
CVSS v3
5.7
EPSS
0.0005
EPSS Percentile
16.6%
Attack Vector
ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Classification
CWE
CWE-20
Status
published
Affected Products (2)
intel/killer
< 23.40.0
intel/proset\/wireless_wifi
< 23.40.0
Timeline
Published
Nov 13, 2024
Tracked Since
Feb 18, 2026