CVE-2015-2291
Intel Ethernet Diagnostics Driver for Windows Denial-of-Service Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
3Exploited in Wild
YesDecision
Descriptions
(1) IQVW32.sys before 1.3.1.0 and (2) IQVW64.sys before 1.3.1.0 in the Intel Ethernet diagnostics driver for Windows allows local users to cause a denial of service or possibly execute arbitrary code with kernel privileges via a crafted (a) 0x80862013, (b) 0x8086200B, (c) 0x8086200F, or (d) 0x80862007 IOCTL call.
(1) IQVW32.sys en versiones anteriores a la 1.3.1.0 y (2) IQVW64.sys en versiones anteriores a la 1.3.1.0 en el controlador de diagnósticos de Intel Ethernet para Windows permite que usuarios locales provoquen una denegación de servicio o, posiblemente, ejecuten código arbitrario con privilegios kernel mediante una llamada IOCTL (a) 0x80862013, (b) 0x8086200B, (c) 0x8086200F o (d) 0x80862007 manipulada.
Intel ethernet diagnostics driver for Windows IQVW32.sys and IQVW64.sys contain an unspecified vulnerability that allows for a denial-of-service (DoS).
CVSS Scores
SSVC
- Decision:-
Timeline
- 2015-03-13 CVE Reserved
- 2015-03-17 CVE Published
- 2020-07-23 First Exploit
- 2023-02-10 Exploited in Wild
- 2023-03-03 KEV Due Date
- 2024-08-06 CVE Updated
- 2024-12-17 EPSS Updated
CWE
- CWE-20: Improper Input Validation
CAPEC
References (6)
URL | Tag | Source |
---|---|---|
http://packetstormsecurity.com/files/130854/Intel-Network-Adapter-Diagnostic-Driver-IOCTL-DoS.html | Third Party Advisory | |
http://www.securityfocus.com/bid/79623 | Third Party Advisory |
URL | Date | SRC |
---|---|---|
https://www.exploit-db.com/exploits/36392 | 2024-08-06 | |
https://github.com/Tare05/Intel-CVE-2015-2291 | 2020-07-23 | |
https://github.com/gmh5225/CVE-2015-2291 | 2023-07-14 |
URL | Date | SRC |
---|---|---|
https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00051&languageid=en-fr | 2017-08-24 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Intel Search vendor "Intel" | Ethernet Diagnostics Driver Iqvw32.sys Search vendor "Intel" for product "Ethernet Diagnostics Driver Iqvw32.sys" | 1.03.0.7 Search vendor "Intel" for product "Ethernet Diagnostics Driver Iqvw32.sys" and version "1.03.0.7" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Windows Search vendor "Microsoft" for product "Windows" | - | - |
Safe
|
Intel Search vendor "Intel" | Ethernet Diagnostics Driver Iqvw64.sys Search vendor "Intel" for product "Ethernet Diagnostics Driver Iqvw64.sys" | 1.03.0.7 Search vendor "Intel" for product "Ethernet Diagnostics Driver Iqvw64.sys" and version "1.03.0.7" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Windows Search vendor "Microsoft" for product "Windows" | - | - |
Safe
|