Junglewise Threat Intelligence

CVE-2026-20747: Intel PROSet/Wireless WiFi Software improper conditions check denial of service

CVE-2026-20747 · Severity: medium · CVSS 6.5 · Published 2026-08-11

Technologies: Intel Wireless Wifi, Intel PROSet/Wireless WiFi Software, Intel Killer Wi-Fi 7 Be1750i\/S, Intel Proset\, Intel Wireless-Ac 9560, Intel Wi-Fi 6 Ax210, Intel Killer Wi-Fi 6 Ax1650i\/S, Intel Wi-Fi 6e Ax211, Intel Killer Wi-Fi 7 Be1750x\/W, Intel Killer Wi-Fi 6e Ax1675x\/W, Intel Wi-Fi 6 Ax201, Intel Killer Wi-Fi 6e Ax1675i\/S, Intel Wi-Fi 7 Be211, Intel Wi-Fi 7 Be200, Intel Wireless-Ac 9461, Intel Wi-Fi 7 Be213, Intel Wi-Fi 7 Be201, Intel Wi-Fi 6 Ax200, Intel Killer Wi-Fi 7 Be1775i\/S, Intel Wireless-Ac 9462. Vendors: Intel.

Executive brief

Intel PROSet/Wireless WiFi Software is a device driver package used to manage WiFi connectivity on Windows systems. A flaw in the driver's condition validation logic allows a nearby network attacker to remotely crash the system or cause service interruption without authentication, impacting system availability and potentially disrupting business operations that depend on stable wireless connectivity.

Technical details

This vulnerability is an improper conditions check (CWE-202/CWE-703 class) in Intel PROSet/Wireless WiFi Software Ring 2 device drivers. The flaw resides in the driver's input validation logic and can be triggered by a network-adjacent attacker sending specially crafted network packets without requiring authentication or user interaction. The attack is low complexity and results in a denial of service by causing the driver to crash or become unresponsive. The CVE-2026-20747 instance specifically affects confidentiality (none), integrity (none), with high availability impact. Patches are available from Intel via INTEL-SA-01422.

Affected products

  • Intel PROSet/Wireless WiFi Software

Timeline

  • 2026-08-11: disclosed: Published on NVD and Intel security advisory INTEL-SA-01422

References

Related threats