Vulnerabilities > Intel > Quickassist Technology > High

DATE CVE VULNERABILITY TITLE RISK
2023-11-14 CVE-2023-28740 Uncontrolled Search Path Element vulnerability in Intel products
Uncontrolled search path element in some Intel(R) QAT drivers for Windows - HW Version 2.0 before version 2.0.4 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.8
2023-11-14 CVE-2023-28741 Classic Buffer Overflow vulnerability in Intel products
Buffer overflow in some Intel(R) QAT drivers for Windows - HW Version 1.0 before version 1.10 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-120
7.8
2023-11-14 CVE-2023-32641 Unspecified vulnerability in Intel Quickassist Technology
Improper input validation in firmware for Intel(R) QAT before version QAT20.L.1.0.40-00004 may allow escalation of privilege and denial of service via adjacent access.
low complexity
intel
8.8
2023-05-10 CVE-2022-21804 Out-of-bounds Write vulnerability in Intel Quickassist Technology 1.6/1.9.0/1.9.00008
Out-of-bounds write in software for the Intel QAT Driver for Windows before version 1.9.0-0008 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-787
7.8
2023-05-10 CVE-2022-40972 Unspecified vulnerability in Intel Quickassist Technology 1.6
Improper access control in some Intel(R) QAT drivers for Windows before version 1.9.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel
7.8
2023-05-10 CVE-2022-41699 Incorrect Permission Assignment for Critical Resource vulnerability in Intel Quickassist Technology 1.6
Incorrect permission assignment for critical resource in some Intel(R) QAT drivers for Windows before version 1.9.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-732
7.8
2023-02-16 CVE-2022-36397 Incorrect Default Permissions vulnerability in Intel Quickassist Technology 1.0.4000004/1.7.L.4.10.0/4.2
Incorrect default permissions in the software installer for some Intel(R) QAT drivers for Linux before version 4.17 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2023-02-16 CVE-2022-37340 Uncontrolled Search Path Element vulnerability in Intel Quickassist Technology 1.0.4000004/1.7.L.4.10.0/4.2
Uncontrolled search path in some Intel(R) QAT drivers for Windows before version 1.6 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.3
2020-11-12 CVE-2020-12333 Insufficiently Protected Credentials vulnerability in Intel Quickassist Technology 1.0.4000004
Insufficiently protected credentials in the Intel(R) QAT for Linux before version 1.7.l.4.10.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-522
7.8