Junglewise Threat Intelligence

CVE-2026-20741: Intel PROSet/Wireless WiFi Software improper access control denial of service

CVE-2026-20741 · Severity: high · CVSS 7.4 · Published 2026-08-11

Technologies: Intel Wi-Fi 7 Be211, Intel Wi-Fi 7 Be200, Intel Wireless Wifi, Intel Killer Wi-Fi 7 Be1775i\/S, Intel Wireless-Ac 9462, Intel Killer Wi-Fi 7 Be1750i\/S, Intel Wi-Fi 7 Be201, Intel Wi-Fi 7 Be213, Intel Killer Wi-Fi 6e Ax1675i\/S, Intel Proset\, Intel PROSet/Wireless WiFi Software, Intel Wi-Fi 6 Ax200, Intel Killer Wi-Fi 6e Ax1675x\/W, Intel Wireless-Ac 9560, Intel Wi-Fi 6e Ax211, Intel Killer Wi-Fi 6 Ax1650i\/S, Intel Wireless-Ac 9461, Intel Wi-Fi 6 Ax210, Intel Wi-Fi 6 Ax201, Intel Killer Wi-Fi 7 Be1750x\/W. Vendors: Intel.

Executive brief

Intel PROSet/Wireless WiFi Software is a device driver that manages wireless network connectivity on systems. An unprivileged local attacker can trigger a denial of service condition that crashes or hangs the system without authentication or user interaction, degrading availability of affected devices.

Technical details

This vulnerability is an improper access control flaw in Ring 2 device drivers within Intel PROSet/Wireless WiFi Software. An unprivileged local software adversary can exploit this via local access with no authentication, low attack complexity, and no user interaction required. The attack results in denial of service by impacting system availability (high impact). The vulnerability is tracked as CVE-2026-20741 with a CVSS v4.0 score of 8.3 and vector AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:L/SA:H. Intel has released software updates to mitigate this issue.

Affected products

  • Intel PROSet/Wireless WiFi Software

Timeline

  • 2026-08-11: disclosed
  • 2026-08-11: advisory: Intel INTEL-SA-01422

References

Related threats