CVE-2018-12131: Intel Client Nvme
High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.
Permissions in the driver pack installers for Intel NVMe before version 4.0.0.1007 and Intel RSTe before version 4.7.0.2083 may allow an authenticated user to potentially escalate privilege via local access.
Affected products
- Intel Client Nvme: before 4.0.0.1007 (fixed in 4.0.0.1007)
- Intel Datacenter Nvme: up to and including 4.0.0.1006
- Intel Rapid Storage Technology: before 4.7.0.2083 (fixed in 4.7.0.2083)
Published 2018-10-10. Last modified 2026-06-17.