PT-2025-46409 · Intel · Intel Neural Compressor
CVE-2025-27712
·
Publicado
2025-11-11
·
Atualizado
2025-11-11
CVSS v3.1
5.7
Média
| Vetor | AV:L/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L |
Name of the Vulnerable Software and Affected Versions
Intel(R) Neural Compressor versions prior to 3.4
Description
A flaw exists in some Intel(R) Neural Compressor software that may allow an escalation of privilege. An unprivileged software adversary with an authenticated user and a low complexity attack may exploit this issue. This could occur via local access when attack requirements are not present, without special internal knowledge, and requires active user interaction. The issue may potentially impact the confidentiality, integrity, and availability of the vulnerable system, but subsequent impacts to these areas are none.
Recommendations
Update to version 3.4 or later.
Correção
Improper Neutralization
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Intel Neural Compressor