Intel QAT Windows Software Buffer Overflow Vulnerability Allowing Denial-of-Service

Vulnerability

A buffer overflow vulnerability has been identified in some Intel QAT Windows software versions prior to 2.6.0. This vulnerability, present within Ring 3: User Applications, may lead to a denial-of-service condition. It can be exploited by a system software adversary with authenticated user access, using a low complexity attack, potentially through local access. The attack requires no special internal knowledge and no user interaction.

Impact

Exploitation of this vulnerability can cause a denial-of-service condition, leading to a significant disruption of the affected system's availability.

Remediation

Users are advised to update Intel QAT Windows software to version 2.6.0 or later. The latest version can be downloaded from the Intel Download Center.

Added: Nov 11, 2025, 6:09 PM
Updated: Nov 11, 2025, 6:09 PM

Vulnerability Rating

Custom Algorithm
spread
6.6
impact
2.5
exploitability
3.3
remediation
7.7
relevance
1.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.