Intel finds a security hole in the Intel Arc 770 and A750
Intel has disclosed a new vulnerability (code INTEL-SA-00812) affecting the company's Arc A770 and Arc A750 graphics cards , two of the most sought-after cards among gamers. The exploit has been rated as medium severity, due to a potential security flaw that could allow for a denial-of-service attack or the disclosure of information.
Intel's internal team has discovered vulnerabilities in the Arc A770 and Arc A750 graphics cards in models sold between October and December 2022. This means that if you purchased one of these two models at launch, you may need to update it to the latest drivers and security patches as soon as they become available. The advisory indicates that the flaw is not widespread, but only affects batches sold during the aforementioned period.
A security flaw in the most popular Intel Arc launch
The security vulnerability encompasses two issues. Error code CVE-2022-41984 describes a flaw in the protection mechanism of some Arc A770 and Arc A750 graphics cards. This flaw allows a privileged user to cause a denial-of-service attack. Separately, vulnerability CVE-2022-38973 describes inadequate access control in a scenario where an authenticated user can enable a denial-of-service attack or information disclosure. In both cases, the user can exploit the vulnerability through local access.
As often happens, this is a security flaw if it turns out that we have malware on our computer that allows remote access, and the malware detects that bug and exploits it. It is not so much that a user wants to do it, but rather that external agents can do it.
Intel has not confirmed whether it will release a firmware update or software patch to mitigate the newly discovered vulnerabilities. The manufacturer recommends that consumers who purchased an Arc A770 or Arc A750 between October and December 2022 contact Intel product support in their region for assistance.
Source: Tom's Hardware

