Description
Uncontrolled search path in some Intel(R) oneAPI Toolkit and component software installers before version 4.3.1.493 may allow an authenticated user to potentially enable escalation of privilege via local access.
Published: 2023-08-11
Score: 6.7 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-32455 Uncontrolled search path in some Intel(R) oneAPI Toolkit and component software installers before version 4.3.1.493 may allow an authenticated user to potentially enable escalation of privilege via local access.
History

Tue, 15 Oct 2024 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

Intel Advisor For Oneapi Cpu Runtime For Opencl Applications Distribution For Python Programming Language Dpc\+\+ Compatibility Tool Embree Ray Tracing Kernel Library Fortran Compiler Implicit Spmd Program Compiler Inspector For Oneapi Integrated Performance Primitives Ipp Cryptography Mpi Library Oneapi Base Toolkit Oneapi Data Analytics Library Oneapi Deep Neural Network Library Oneapi Dpc\+\+\/c\+\+ Compiler Oneapi Dpc\+\+ Library \(onedpl\) Oneapi Hpc Toolkit Oneapi Iot Toolkit Oneapi Math Kernel Library Oneapi Rendering Toolkit Oneapi Threading Building Blocks Oneapi Toolkit And Component Software Installer Oneapi Video Processing Library Open Image Denoise Open Volume Kernel Library Ospray Ospray Studio Trace Analyzer And Collector Vtune Profiler For Oneapi
cve-icon MITRE

Status: PUBLISHED

Assigner: intel

Published:

Updated: 2024-10-15T19:05:50.922Z

Reserved: 2023-04-07T03:00:04.506Z

Link: CVE-2023-28823

cve-icon Vulnrichment

Updated: 2024-08-02T13:51:38.696Z

cve-icon NVD

Status : Modified

Published: 2023-08-11T03:15:26.530

Modified: 2024-11-21T07:56:05.053

Link: CVE-2023-28823

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses