CVE-2021-26257
Last modified
CVE-2021-26257 is a medium-severity vulnerability rated 5.5/10 on the CVSS scale. Improper buffer restrictions in firmware for some Intel(R) Wireless Bluetooth(R) and Killer(TM) Bluetooth(R) products before version 22.120 may allow an authenticated user to potentially enable denial of service via local access.. EPSS estimates a 0.19% chance of exploitation in the next 30 days.
Description
Improper buffer restrictions in firmware for some Intel(R) Wireless Bluetooth(R) and Killer(TM) Bluetooth(R) products before version 22.120 may allow an authenticated user to potentially enable denial of service via local access.
Metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Intel | Wi-Fi 6 Ax411 Firmware | < 22.120 |
| Intel | Wi-Fi 6 Ax211 Firmware | < 22.120 |
| Intel | Wi-Fi 6 Ax210 Firmware | < 22.120 |
| Intel | Wi-Fi 6 Ax201 Firmware | < 22.120 |
| Intel | Wi-Fi 6 Ax200 Firmware | < 22.120 |
| Intel | Wireless-Ac 9560 Firmware | < 22.120 |
| Intel | Wireless-Ac 9462 Firmware | < 22.120 |
| Intel | Wireless-Ac 9461 Firmware | < 22.120 |
| Intel | Wireless-Ac 9260 Firmware | < 22.120 |
| Intel | Dual Band Wireless-Ac 8265 Firmware | < 22.120 |
| Intel | Dual Band Wireless-Ac 8260 Firmware | < 22.120 |
| Intel | Dual Band Wireless-Ac 3168 Firmware | < 22.120 |
| Intel | Wireless 7265 Firmware | < 22.120 |
| Intel | Dual Band Wireless-Ac 3165 Firmware | < 22.120 |
| Intel | Killer Wi-Fi 6e Ax1690 Firmware | < 22.120 |
| Intel | Killer Wi-Fi 6e Ax1675 Firmware | < 22.120 |
| Intel | Killer Wi-Fi 6 Ax1650 Firmware | < 22.120 |
| Intel | Killer Wireless-Ac 1550 Firmware | < 22.120 |
References
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00628.htmlPatch, Vendor Advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00628.htmlPatch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2021-26257?
How severe is CVE-2021-26257?
How do I fix CVE-2021-26257?
Are you affected by CVE-2021-26257?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
