Executive brief
Intel PROSet/Wireless WiFi Software is a driver package for Windows systems that manages wireless network connectivity. A resource consumption vulnerability in the device driver (Ring 2 code) allows an unprivileged local attacker to crash the system or render it unresponsive, disrupting business operations and availability without requiring special privileges or user interaction.
Technical details
CVE-2026-20780 is an uncontrolled resource consumption vulnerability in Intel PROSet/Wireless WiFi Software device drivers running in Ring 2 (kernel mode) on Windows. An unprivileged local attacker can trigger resource exhaustion through a low-complexity attack without authentication or user interaction, causing a denial of service condition. The vulnerability impacts system availability (high directly, low as a secondary impact) with no confidentiality or integrity impact. Intel has released software updates to mitigate this and related vulnerabilities in the driver package.
Affected products
- Intel PROSet/Wireless WiFi Software <UNKNOWN>
Timeline
- 2026-08-11: disclosed