CVE-2025-32092
Awaiting Analysis
Awaiting Analysis - Queue
Insecure Permissions in Intel Graphics Software Allow Privilege Escalation
Publication date: 2026-02-10
Last updated on: 2026-04-20
Assigner: Intel Corporation
Description
Description
Insecure inherited permissions for some Intel(R) Graphics Software before version 25.30.1702.0 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with an authenticated user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are present without special internal knowledge and requires active user interaction. The potential vulnerability may impact the confidentiality (high), integrity (high) and availability (high) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (none) impacts.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| intel | graphics_driver | to 32.0.101.7026 (exc) |
| intel | graphics_driver | to 32.0.101.6979 (exc) |
| intel | graphics_software | to 25.30.1702.0 (exc) |
| intel | linux_intel_lts_kernel | to 6.12.28-linux-250521T070434Z (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-277 | A product defines a set of insecure permissions that are inherited by objects that are created by the program. |