PT-2023-7388 · Intel · Intel Connectivity Performance Suite
Motty Alon
·
Published
2023-11-14
·
Updated
2024-08-30
·
CVE-2023-32279
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:C/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Intel Connectivity Performance Suite versions prior to 2.1123.214.2
Description
The issue is related to improper access control in the user mode driver for Intel Connectivity Performance Suite, which may allow an unauthenticated user to potentially enable information disclosure via network access. This could permit a remote attacker to reveal protected information.
Recommendations
For versions prior to 2.1123.214.2, update to version 2.1123.214.2 or later to resolve the issue. As a temporary workaround, consider restricting network access to minimize the risk of exploitation.
Fix
Improper Access Control
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Intel Connectivity Performance Suite