PT-2023-21094 · Intel · Intel Oneapi Toolkit

Marius Gabriel Mihai

·

Published

2023-08-10

·

Updated

2023-08-17

·

CVE-2023-27391

CVSS v3.1

6.7

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Intel(R) oneAPI Toolkit versions prior to 4.3.1.493
Description The issue is related to improper access control in some Intel(R) oneAPI Toolkit and component software installers, which may allow a privileged user to potentially enable escalation of privilege via local access.
Recommendations For versions prior to 4.3.1.493, update to version 4.3.1.493 or later to resolve the issue. As a temporary workaround, consider restricting local access to the installers until a patch is applied.

Fix

Improper Access Control

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2023-27391

Affected Products

Intel Oneapi Toolkit