PT-2024-2697 · Intel · Intel Binary Configuration Tool

Mohamed Amine Saidani

·

Published

2024-02-13

·

Updated

2024-10-29

·

CVE-2023-24591

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Intel Binary Configuration Tool versions prior to 3.4.4
Description The issue is related to an uncontrolled search path in the Intel Binary Configuration Tool software. This may allow an authenticated user to potentially enable escalation of privilege via local access.
Recommendations For versions prior to 3.4.4, update to version 3.4.4 or later to resolve the issue.

Fix

Uncontrolled Search Path Element

Weakness Enumeration

Related Identifiers

BDU:2024-02808
CVE-2023-24591

Affected Products

Intel Binary Configuration Tool