peter bassill · operator
$ cve CVE-2015-2291 JSON

CVE-2015-2291 KEV EXPLOIT

7.8
HIGH · CVSS 3.1 · EPSS 9% (pctl 95)

Patch first

On CISA KEV — known exploited in the wild, due 2023-03-03.

Description

(1) IQVW32.sys before 1.3.1.0 and (2) IQVW64.sys before 1.3.1.0 in the Intel Ethernet diagnostics driver for Windows allows local users to cause a denial of service or possibly execute arbitrary code with kernel privileges via a crafted (a) 0x80862013, (b) 0x8086200B, (c) 0x8086200F, or (d) 0x80862007 IOCTL call.

Scoring

CVSS7.8 (HIGH, v3.1)
VectorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS9.01% — more likely to be exploited than 95% of all CVEs
WeaknessCWE-20
On CISA KEVyes — remediate by 2023-03-03
Public exploityes
Published2017-08-09
Last modified2026-08-04

CISA KEV

NameIntel Ethernet Diagnostics Driver for Windows Denial-of-Service Vulnerability
Added2023-02-10
Due2023-03-03
Vendor / productIntel / Ethernet Diagnostics Driver for Windows
Ransomware useknown

Affected (3)

VendorProduct
intelethernet diagnostics driver iqvw32.sys
intelethernet diagnostics driver iqvw64.sys
microsoftwindows

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD