Junglewise Threat Intelligence

CVE-2026-20780: Intel PROSet/Wireless WiFi Software uncontrolled resource consumption

CVE-2026-20780 · Severity: medium · CVSS 6.5 · Published 2026-08-11

Technologies: Intel Wi-Fi 7 Be211, Intel Wi-Fi 7 Be200, Intel Wireless Wifi, Intel Killer Wi-Fi 7 Be1775i\/S, Intel Wireless-Ac 9462, Intel Killer Wi-Fi 7 Be1750i\/S, Intel Wi-Fi 7 Be201, Intel Wi-Fi 7 Be213, Intel Killer Wi-Fi 6e Ax1675i\/S, Intel Proset\, Intel PROSet/Wireless WiFi Software, Intel Wi-Fi 6 Ax200, Intel Killer Wi-Fi 6e Ax1675x\/W, Intel Wireless-Ac 9560, Intel Wi-Fi 6e Ax211, Intel Killer Wi-Fi 6 Ax1650i\/S, Intel Wireless-Ac 9461, Intel Wi-Fi 6 Ax210, Intel Wi-Fi 6 Ax201, Intel Killer Wi-Fi 7 Be1750x\/W. Vendors: Intel.

Executive brief

Intel PROSet/Wireless WiFi Software is a driver package for Windows systems that manages wireless network connectivity. A resource consumption vulnerability in the device driver (Ring 2 code) allows an unprivileged local attacker to crash the system or render it unresponsive, disrupting business operations and availability without requiring special privileges or user interaction.

Technical details

CVE-2026-20780 is an uncontrolled resource consumption vulnerability in Intel PROSet/Wireless WiFi Software device drivers running in Ring 2 (kernel mode) on Windows. An unprivileged local attacker can trigger resource exhaustion through a low-complexity attack without authentication or user interaction, causing a denial of service condition. The vulnerability impacts system availability (high directly, low as a secondary impact) with no confidentiality or integrity impact. Intel has released software updates to mitigate this and related vulnerabilities in the driver package.

Affected products

  • Intel PROSet/Wireless WiFi Software <UNKNOWN>

Timeline

  • 2026-08-11: disclosed

References

Related threats