
Cloud Vulnerability DB
A community-led vulnerabilities database
Improper input validation vulnerability (CVE-2022-21181) affects Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi products. The vulnerability was discovered in 2021 and publicly disclosed in August 2022. The affected products include various Intel wireless adapters such as Dual Band Wireless-AC 8260/8265, Killer AC 1550, and Wireless-AC 9260/9461/9462/9560 series (NVD).
The vulnerability is classified as an improper input validation issue (CWE-20). It received a CVSS v3.1 base score of 7.8 (HIGH), with the vector string CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H, indicating local access requirements with low attack complexity and privilege requirements (NVD).
If exploited, this vulnerability could allow a privileged user to escalate privileges on the affected system through local access (Intel Advisory).
Intel has released firmware and software updates to address this vulnerability. For Intel wireless adapters, firmware version 22.120 addresses the issue for most affected devices, while Killer AC 1550 requires firmware version 3.1122.1105 or later. The fix has also been included in various Linux distributions, including Debian's firmware-nonfree package version 20190114+really20220913-0+deb10u1 (Debian Advisory).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."