CVE-2023-22355 PUBLISHED CVSS 6.699999809265137 MEDIUM

Uncontrolled search path in some Intel(R) oneAPI Toolkit and component software installers before version 4.3.0.251 may allow an authenticated user to potentially enable escalation of privilege via local access.

EPSS 0.10% · 26.8th percentile

Risk Scores

CVSS v3.1
6.699999809265137
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
EPSS Score
0.10%
26.8th percentile

Affected Products

VendorProductVersions
inteloneapi_math_kernel_library0, 0
inteloneapi_iot_toolkit0, 0
inteloneapi_rendering_toolkit0, 0
inteladvisor0, 0
inteloneapi_dpc\+\+_library0, 0
inteloneapi_threading_building_blocks0, 0
intelinspector0, 0
n/aIntel(R) oneAPI Toolkit and component software installersbefore version 4.3.0.251
intelvtune_profiler0, 0
inteloneapi_base_toolkit0, 0
inteloneapi_deep_neural_network_library0, 0
intelospray_studio0, 0
inteloneapi_hpc_toolkit2023.0.0, 0, 2023.0.0
intelospray0, 0
inteltrace_analyzer_and_collector0, 0
intelcpu_runtime0, 0
inteloneapi_data_analytics_library0, 0
intelembree_ray_tracing_kernel_library0, 0
inteloneapi_video_processing_library0, 0
intelopen_volume_kernel_library0, 0

…and 10 more

Timeline

References

…and 18 more

Open in Interactive Console →