HackerFeeds
All CVEs

CVE-2015-2291

HIGH7.8
CISA KEV

Published 2017-08-09 · Updated 2026-08-04 · Source cve@mitre.org

Description

(1) IQVW32.sys before 1.3.1.0 and (2) IQVW64.sys before 1.3.1.0 in the Intel Ethernet diagnostics driver for Windows allows local users to cause a denial of service or possibly execute arbitrary code with kernel privileges via a crafted (a) 0x80862013, (b) 0x8086200B, (c) 0x8086200F, or (d) 0x80862007 IOCTL call.

CVSS vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CWE-20CWE-20

CISA Known-Exploited Vulnerability

Product: IntelEthernet Diagnostics Driver for Windows

Name: Intel Ethernet Diagnostics Driver for Windows Denial-of-Service Vulnerability

Date added: 2023-02-10 · Due: 2023-03-03

USED IN RANSOMWARE

Required action: Apply updates per vendor instructions.

View on NVD