---
id: CVE-2015-2291
title: >-
  (1) IQVW32.sys before 1.3.1.0 and (2) IQVW64.sys before 1.3.1.0 in the Intel
  Ethernet diagnostics driver for Windows allows local users to cause a denial
  of service or possibly execute arbitrary code with kernel privileges via a
  crafted …
summary: >-
  (1) IQVW32.sys before 1.3.1.0 and (2) IQVW64.sys before 1.3.1.0 in the Intel
  Ethernet diagnostics driver for Windows allows local users to cause a denial
  of service or possibly execute arbitrary code with kernel privileges via a
  crafted …
severity: high
cvss: 7.8
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'
cwe:
  - CWE-20
  - CWE-20
vendor: intel
product: ethernet_diagnostics_driver_iqvw32.sys
affected:
  - ethernet_diagnostics_driver_iqvw32.sys = 1.03.0.7
  - ethernet_diagnostics_driver_iqvw64.sys = 1.03.0.7
published: '2017-08-09'
updated: '2026-08-04'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2015-2291'
references:
  - url: >-
      http://packetstormsecurity.com/files/130854/Intel-Network-Adapter-Diagnostic-Driver-IOCTL-DoS.html
    label: cve@mitre.org
  - url: 'http://www.securityfocus.com/bid/79623'
    label: cve@mitre.org
  - url: >-
      https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00051&languageid=en-fr
    label: cve@mitre.org
  - url: 'https://www.exploit-db.com/exploits/36392/'
    label: cve@mitre.org
  - url: >-
      http://packetstormsecurity.com/files/130854/Intel-Network-Adapter-Diagnostic-Driver-IOCTL-DoS.html
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'http://www.securityfocus.com/bid/79623'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: >-
      https://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00051&languageid=en-fr
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'https://www.exploit-db.com/exploits/36392/'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: >-
      https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2015-2291
    label: 134c704f-9b21-4f2e-91b3-4a467353bcc0
tags:
  - nvd
  - kev
  - in-the-wild
  - exploit-available
epss: 0.09011
epssPercentile: 0.95103
kev: true
kevDateAdded: '2023-02-10'
kevDueDate: '2023-03-03'
kevRansomware: true
exploited: true
exploitAvailable: true
ingestedAt: '2026-08-04T05:36:12.066Z'
exploits:
  exploitdb: true
  github: 3
  githubRepos:
    - 'https://github.com/Tare05/Intel-CVE-2015-2291'
    - 'https://github.com/gmh5225/CVE-2015-2291'
    - 'https://github.com/ethanedits/iqvw64e-privilege-escalation'
  checkedAt: '2026-09-21T15:23:35.062Z'
---

## Overview

(1) IQVW32.sys before 1.3.1.0 and (2) IQVW64.sys before 1.3.1.0 in the Intel Ethernet diagnostics driver for Windows allows local users to cause a denial of service or possibly execute arbitrary code with kernel privileges via a crafted (a) 0x80862013, (b) 0x8086200B, (c) 0x8086200F, or (d) 0x80862007 IOCTL call.

## Affected

- `ethernet_diagnostics_driver_iqvw32.sys = 1.03.0.7`
- `ethernet_diagnostics_driver_iqvw64.sys = 1.03.0.7`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
