PT-2026-7284 · Intel · Vtune Profiler+1
CVE-2025-20106
·
Publicado
2026-02-10
·
Atualizado
2026-02-10
CVSS v3.1
6.7
Média
| Vetor | AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
VTune(TM) Profiler software and Intel(R) oneAPI Base Toolkits versions prior to 2025.0
Description
An uncontrolled search path exists in the software installer for VTune(TM) Profiler software and Intel(R) oneAPI Base Toolkits. This issue, occurring within Ring 3: User Applications, may allow an escalation of privilege. A system software adversary with an authenticated user and a high complexity attack may enable privilege escalation. This requires local access, active user interaction, and does not require special internal knowledge. The potential impact to the vulnerable system includes confidentiality, integrity, and availability.
Recommendations
Update to version 2025.0 or later.
Correção
Uncontrolled Search Path Element
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Intel Oneapi Base Toolkit
Vtune Profiler