PT-2024-8686 · Intel · Intel Binary Configuration Tool

J00Sean

·

Published

2024-11-12

·

Updated

2024-11-15

·

CVE-2024-23312

CVSS v3.1

6.7

Medium

VectorAV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Intel Binary Configuration Tool versions prior to 3.4.5
Description The issue is related to an uncontrolled search path element in the Intel Binary Configuration Tool. Exploitation of this issue may allow an attacker to potentially enable escalation of privilege via local access.
Recommendations For versions prior to 3.4.5, update to version 3.4.5 or later to resolve the issue.

Fix

Uncontrolled Search Path Element

Weakness Enumeration

Related Identifiers

BDU:2024-10288
CVE-2024-23312

Affected Products

Intel Binary Configuration Tool