PT-2024-8771 · Intel+1 · Intel Vpl+1

Published

2024-11-12

·

Updated

2024-11-15

·

CVE-2024-28030

CVSS v3.1

2.2

Low

VectorAV:L/AC:H/PR:L/UI:R/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions: Intel VPL software versions prior to 24.1.4
Description: The issue is related to a NULL pointer dereference in the Intel Video Processing Library (VPL) software, which may allow an authenticated user to potentially enable denial of service via local access. This could be exploited by an attacker to cause a service disruption.
Recommendations: For versions prior to 24.1.4, update to version 24.1.4 or later to resolve the issue. As a temporary workaround, consider restricting local access to the system to minimize the risk of exploitation.

Fix

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2024-10386
CVE-2024-28030

Affected Products

Debian
Intel Vpl