PT-2023-23943 · Intel · Intel Realsense Sdks

J00Sean

·

Published

2023-08-11

·

Updated

2023-08-21

·

CVE-2023-32663

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Intel(R) RealSense(TM) SDKs version 2.53.1 Intel(R) RealSense(TM) SDKs version 0.25.0
Description The issue is related to incorrect default permissions in some Intel(R) RealSense(TM) SDKs, which may allow an authenticated user to potentially enable escalation of privilege via local access.
Recommendations For Intel(R) RealSense(TM) SDKs version 2.53.1, update to a version with corrected default permissions to prevent potential privilege escalation. For Intel(R) RealSense(TM) SDKs version 0.25.0, update to a version with corrected default permissions to prevent potential privilege escalation.

Fix

Incorrect Default Permissions

Weakness Enumeration

Related Identifiers

CVE-2023-32663

Affected Products

Intel Realsense Sdks