CVE-2024-25561

Insecure inherited permissions in some Intel(R) HID Event Filter software installers before version 2.2.2.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:intel:hid_event_filter_driver:2.2.2.1:*:*:*:*:*:*:*
cpe:2.3:a:intel:nuc_m15_laptop_kit_lapbc510:-:*:*:*:*:*:*:*
cpe:2.3:a:intel:nuc_m15_laptop_kit_lapbc710:-:*:*:*:*:*:*:*
cpe:2.3:a:intel:nuc_m15_laptop_kit_laprc510:-:*:*:*:*:*:*:*
cpe:2.3:a:intel:nuc_m15_laptop_kit_laprc710:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_lapac71g:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_lapac71h:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_lapkc51e:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_lapkc71e:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_lapkc71f:-:*:*:*:*:*:*:*

History

12 Sep 2024, 18:50

Type Values Removed Values Added
CPE cpe:2.3:h:intel:nuc_x15_laptop_kit_lapac71g:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_lapkc71e:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_lapkc71f:-:*:*:*:*:*:*:*
cpe:2.3:a:intel:nuc_m15_laptop_kit_lapbc510:-:*:*:*:*:*:*:*
cpe:2.3:a:intel:nuc_m15_laptop_kit_laprc510:-:*:*:*:*:*:*:*
cpe:2.3:a:intel:hid_event_filter_driver:2.2.2.1:*:*:*:*:*:*:*
cpe:2.3:a:intel:nuc_m15_laptop_kit_laprc710:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_lapac71h:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:nuc_x15_laptop_kit_lapkc51e:-:*:*:*:*:*:*:*
cpe:2.3:a:intel:nuc_m15_laptop_kit_lapbc710:-:*:*:*:*:*:*:*
First Time Intel nuc M15 Laptop Kit Laprc710
Intel nuc M15 Laptop Kit Laprc510
Intel nuc M15 Laptop Kit Lapbc510
Intel nuc X15 Laptop Kit Lapac71h
Intel nuc X15 Laptop Kit Lapkc71f
Intel nuc X15 Laptop Kit Lapac71g
Intel nuc M15 Laptop Kit Lapbc710
Intel nuc X15 Laptop Kit Lapkc51e
Intel
Intel hid Event Filter Driver
Intel nuc X15 Laptop Kit Lapkc71e
References () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01089.html - () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01089.html - Vendor Advisory
CWE CWE-732
Summary
  • (es) Los permisos heredados inseguros en algunos instaladores del software Intel(R) HID Event Filter anteriores a la versión 2.2.2.1 pueden permitir que un usuario autenticado habilite potencialmente la escalada de privilegios a través del acceso local.
CVSS v2 : unknown
v3 : 6.7
v2 : unknown
v3 : 7.8

14 Aug 2024, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-08-14 14:15

Updated : 2024-09-12 18:50


NVD link : CVE-2024-25561

Mitre link : CVE-2024-25561

CVE.ORG link : CVE-2024-25561


JSON object : View

Products Affected

intel

  • nuc_x15_laptop_kit_lapac71h
  • nuc_x15_laptop_kit_lapkc71e
  • nuc_m15_laptop_kit_lapbc710
  • hid_event_filter_driver
  • nuc_x15_laptop_kit_lapac71g
  • nuc_m15_laptop_kit_laprc510
  • nuc_m15_laptop_kit_lapbc510
  • nuc_x15_laptop_kit_lapkc71f
  • nuc_m15_laptop_kit_laprc710
  • nuc_x15_laptop_kit_lapkc51e
CWE
CWE-732

Incorrect Permission Assignment for Critical Resource

CWE-277

Insecure Inherited Permissions