PT-2023-12847 · Intel · Intel C++ Compiler Classic+1

Published

2023-02-16

·

Updated

2023-08-08

·

CVE-2022-25987

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Intel(R) C++ Compiler Classic versions prior to 2021.6 Intel(R) oneAPI Toolkits versions prior to 2022.2
Description The issue is related to improper handling of Unicode encoding in source code compiled by the Intel(R) C++ Compiler Classic. This may allow an unauthenticated user to potentially enable escalation of privilege via network access.
Recommendations For Intel(R) C++ Compiler Classic versions prior to 2021.6, update to version 2021.6 or later. For Intel(R) oneAPI Toolkits versions prior to 2022.2, update to version 2022.2 or later.

Fix

Related Identifiers

CVE-2022-25987

Affected Products

Intel C++ Compiler Classic
Intel Oneapi Toolkit