VYPR
Unrated severityNVD Advisory· Published Mar 14, 2019· Updated Sep 16, 2024

CVE-2018-12220

CVE-2018-12220

Description

Logic bug in Kernel Mode Driver in Intel(R) Graphics Driver for Windows* before versions before versions 10.18.x.5059 (aka 15.33.x.5059), 10.18.x.5057 (aka 15.36.x.5057), 20.19.x.5063 (aka 15.40.x.5063) 21.20.x.5064 (aka 15.45.x.5064) and 24.20.100.6373 potentially enables a privileged user to execute arbitrary code via local access.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

A logic bug in the Intel Graphics Driver kernel-mode driver allows a privileged local user to execute arbitrary code.

Vulnerability

A logic bug exists in the kernel-mode driver (KMD) component of the Intel Graphics Driver for Windows, affecting versions prior to 10.18.x.5059 (15.33.x.5059), 10.18.x.5057 (15.36.x.5057), 20.19.x.5063 (15.40.x.5063), 21.20.x.5064 (15.45.x.5064), and version 24.20.100.6373. The bug resides in the driver's internal logic and can be triggered under specific, unspecified conditions by a user with local access to the system [1].

Exploitation

An attacker must have local access to the target system and possess user-level privileges. No user interaction beyond initiating the attack is required; the attacker can run a specially crafted application that interacts with the vulnerable kernel-mode driver. The exact sequence of steps to trigger the bug is not publicly detailed in the available advisories, but the flaw is reachable from user mode [1].

Impact

Successful exploitation grants the attacker the ability to execute arbitrary code in kernel context, which is the highest privilege level on a Windows system. This leads to complete compromise of confidentiality, integrity, and availability, allowing the attacker to install programs, view, change, or delete data, or create new accounts with full user rights [1].

Mitigation

Intel released updated driver versions containing the fix: 10.18.x.5059 (15.33.x.5059), 10.18.x.5057 (15.36.x.5057), 20.19.x.5063 (15.40.x.5063), 21.20.x.5064 (15.45.x.5064), and 24.20.100.6373. Users should update their Intel Graphics Driver to the latest version available from the Intel Download Center or via their system manufacturer [1]. No workarounds are documented in the reference.

References
  1. INTEL-SA-00189

AI Insight generated on May 26, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

2
  • Range: before 10.18.x.5059, 10.18.x.5057, 20.19.x.5063, 21.20.x.5064, 24.20.100.6373
  • Intel Corporation/Intel(R) Graphics Driver for Windowsv5
    Range: Multiple versions.

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.