PT-2024-8900 · Intel · Intel License Manager For Flexlm

Sim0Nsecurity

·

Published

2024-08-13

·

Updated

2024-09-12

·

CVE-2024-24977

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Intel(R) License Manager for FLEXlm product software versions prior to 11.19.5.0
Description: The issue is related to an uncontrolled search path in the Intel License Manager for FLEXlm product software. This could allow an authenticated user to potentially enable escalation of privilege via local access.
Recommendations: For versions prior to 11.19.5.0, update to version 11.19.5.0 or later to resolve the issue. As a temporary workaround, consider restricting local access to the system until a patch is applied.

Fix

Uncontrolled Search Path Element

Weakness Enumeration

Related Identifiers

BDU:2024-10567
CVE-2024-24977

Affected Products

Intel License Manager For Flexlm