All CVEs View on NVD
CVE-2015-2291
HIGH7.8
CISA KEV
Published 2017-08-09 · Updated 2026-08-04 · Source cve@mitre.org
Description
(1) IQVW32.sys before 1.3.1.0 and (2) IQVW64.sys before 1.3.1.0 in the Intel Ethernet diagnostics driver for Windows allows local users to cause a denial of service or possibly execute arbitrary code with kernel privileges via a crafted (a) 0x80862013, (b) 0x8086200B, (c) 0x8086200F, or (d) 0x80862007 IOCTL call.
CVSS vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE-20CWE-20
CISA Known-Exploited Vulnerability
Product: Intel — Ethernet Diagnostics Driver for Windows
Name: Intel Ethernet Diagnostics Driver for Windows Denial-of-Service Vulnerability
Date added: 2023-02-10 · Due: 2023-03-03
USED IN RANSOMWARE
Required action: Apply updates per vendor instructions.
References
- http://packetstormsecurity.com/files/130854/Intel-Network-Adapter-Diagnostic-Driver-IOCTL-DoS.html
- http://www.securityfocus.com/bid/79623
- https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00051&languageid=en-fr
- https://www.exploit-db.com/exploits/36392/
- http://packetstormsecurity.com/files/130854/Intel-Network-Adapter-Diagnostic-Driver-IOCTL-DoS.html
- http://www.securityfocus.com/bid/79623
- https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00051&languageid=en-fr
- https://www.exploit-db.com/exploits/36392/

