MEDIUM · 6.7

CVE-2025-32453

Incorrect default permissions for some Intel(R) Graphics Driver software within Ring 2: Privileged Process may allow an escalation of privilege. Unprivileged software adversary with an authenticated u...

Vulnerability Description

Incorrect default permissions for some Intel(R) Graphics Driver software within Ring 2: Privileged Process may allow an escalation of privilege. Unprivileged software adversary with an authenticated user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present without special internal knowledge and requires active user interaction. The potential vulnerability may impact the confidentiality (high), integrity (high) and availability (high) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (none) impacts.

CVSS Score

6.7

MEDIUM

CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
Attack Vector
LOCAL
Attack Complexity
HIGH
Privileges Required
LOW
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
IntelGraphics Driver< 32.0.101.7026
IntelArc 130T-
IntelArc 130V-
IntelArc 140T-
IntelArc 140V-
IntelArc A310-
IntelArc A350M-
IntelArc A370M-
IntelArc A380-
IntelArc A530M-
IntelArc A550M-
IntelArc A570M-
IntelArc A580-
IntelArc A730M-
IntelArc A750-
IntelArc A770-
IntelArc A770M-
IntelArc B370-
IntelArc B390-
IntelArc B570-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2025-32453?

CVE-2025-32453 is a vulnerability with a CVSS score of 6.7 (MEDIUM). Incorrect default permissions for some Intel(R) Graphics Driver software within Ring 2: Privileged Process may allow an escalation of privilege. Unprivileged software adversary with an authenticated u...

How severe is CVE-2025-32453?

CVE-2025-32453 has been rated MEDIUM with a CVSS base score of 6.7/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2025-32453?

Check the references section above for vendor advisories and patch information. Affected products include: Intel Graphics Driver, Intel Arc 130T, Intel Arc 130V, Intel Arc 140T, Intel Arc 140V.