Impact
Intel AI Containers before version 0.4.0 contain a protection mechanism failure that permits a local, privileged user to gain higher privileges on the container system. The flaw may also affect confidentiality, integrity, and availability of the system at high levels. The vulnerability is identified by CWE-693, indicating a failure in the implementation of a security mechanism. The description notes that the attack requires minimal complexity, local access, passive user interaction, and no special internal knowledge to be effective.
Affected Systems
Intel AI Containers older than version 0.4.0 are susceptible to this flaw. No other vendors or products are listed as affected.
Risk and Exploitability
The CVSS score of 5.4 conveys a moderate severity. The EPSS score of less than 1% indicates a low likelihood of exploitation at this time, and the vulnerability is not listed in the CISA KEV catalog. Attackers would need privileged access on the host system and can exploit the flaw without advanced techniques. The resulting privilege escalation can lead to full compromise of the container and its host.
OpenCVE Enrichment