SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityAnalyzed

CVE-2023-29162

Improper buffer restrictions the Intel(R) C++ Compiler Classic before version 2021.8 for Intel(R) oneAPI Toolkits before version 2022.3.1 may allow a privileged user to potentially enable escalation of privilege via local access.

MEDIUM 6.0EPSS 0.17%

Does this matter?

Lower severity and a low EPSS score (0.17%). Track it; it rarely justifies an emergency change on its own.

Description

Improper buffer restrictions the Intel(R) C++ Compiler Classic before version 2021.8 for Intel(R) oneAPI Toolkits before version 2022.3.1 may allow a privileged user to potentially enable escalation of privilege via local access.

CVSS 3.1
6.0 MEDIUMCVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:L
EPSS
0.17% probability · 7th percentile
CISA KEV
Not listed
Weakness
CWE-276
Affected
intel/advisor · intel/cluster checker · intel/distribution for python · intel/inspector · intel/integrated performance primitives · intel/integrated performance primitives cryptography · intel/mpi library · intel/oneapi ai analytics toolkit · intel/oneapi base toolkit · intel/oneapi deep neural network · intel/oneapi hpc toolkit · intel/oneapi iot toolkit · intel/oneapi math kernel library · intel/threading building blocks · intel/trace analyzer and collector · intel/vtune profiler
Source
secure@intel.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.