Executive brief
Intel PROSet/Wireless WiFi Software is a device driver package used to manage WiFi connectivity on Windows systems. A flaw in the driver's condition validation logic allows a nearby network attacker to remotely crash the system or cause service interruption without authentication, impacting system availability and potentially disrupting business operations that depend on stable wireless connectivity.
Technical details
This vulnerability is an improper conditions check (CWE-202/CWE-703 class) in Intel PROSet/Wireless WiFi Software Ring 2 device drivers. The flaw resides in the driver's input validation logic and can be triggered by a network-adjacent attacker sending specially crafted network packets without requiring authentication or user interaction. The attack is low complexity and results in a denial of service by causing the driver to crash or become unresponsive. The CVE-2026-20747 instance specifically affects confidentiality (none), integrity (none), with high availability impact. Patches are available from Intel via INTEL-SA-01422.
Affected products
- Intel PROSet/Wireless WiFi Software
Timeline
- 2026-08-11: disclosed: Published on NVD and Intel security advisory INTEL-SA-01422