PT-2023-7394 · Intel · Intel Trace Analyzer/Collector

Published

2023-05-09

·

Updated

2023-05-19

·

CVE-2023-23910

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Intel Trace Analyzer and Collector versions prior to 2021.8.0
Description The issue is related to an out-of-bounds write in the Intel Trace Analyzer and Collector software. This could potentially allow an authenticated user to escalate their privileges via local access.
Recommendations For versions prior to 2021.8.0, update to version 2021.8.0 or later to resolve the issue. As a temporary workaround, consider restricting local access to the software to minimize the risk of exploitation.

Fix

Memory Corruption

Weakness Enumeration

Related Identifiers

BDU:2023-08431
CVE-2023-23910

Affected Products

Intel Trace Analyzer/Collector