Executive brief
Intel PROSet/Wireless WiFi Software is a driver for WiFi connectivity on Windows systems. An improper buffer restrictions vulnerability in the kernel-mode component could allow an attacker with adjacent network access to crash or severely degrade the system's availability, potentially causing service outages for users dependent on wireless connectivity.
Technical details
CVE-2026-22887 is an improper buffer restrictions vulnerability in Intel PROSet/Wireless WiFi Software's Ring 0 kernel driver. The vulnerability can be exploited by an unprivileged, unauthenticated attacker via adjacent network access with low attack complexity and no user interaction required. The flaw impacts system availability (high) and integrity (low), allowing denial of service conditions. The CVSS 4.0 vector is AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:H, with a base score of 8.3. Patched versions are available from Intel.
Affected products
- Intel PROSet/Wireless WiFi Software
Timeline
- 2026-08-11: disclosed: INTEL-SA-01468 advisory published