CVE-2019-11162 is a high-severity insufficient access control vulnerability in the SEMA driver of Intel Computing Improvement Program versions prior to 2.4.0.04733. An authenticated local attacker could exploit this to achieve escalation of privilege, denial of service, or information disclosure. The CVSS score of 7.8 reflects a low attack complexity and local access requirement for high impact across confidentiality, integrity, and availability. While no public exploit code or active exploitation has been observed, the vulnerability has received some community attention and media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 2.4.0.04733CPE matchmatch criteria | cpe:2.3:a:intel:computing_improvement_program:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.