PT-2025-46409 · Intel · Intel Neural Compressor
Published
2025-11-11
·
Updated
2025-11-11
·
CVE-2025-27712
CVSS v3.1
5.7
Medium
| Vector | AV:L/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L |
Name of the Vulnerable Software and Affected Versions
Intel(R) Neural Compressor versions prior to 3.4
Description
A flaw exists in some Intel(R) Neural Compressor software that may allow an escalation of privilege. An unprivileged software adversary with an authenticated user and a low complexity attack may exploit this issue. This could occur via local access when attack requirements are not present, without special internal knowledge, and requires active user interaction. The issue may potentially impact the confidentiality, integrity, and availability of the vulnerable system, but subsequent impacts to these areas are none.
Recommendations
Update to version 3.4 or later.
Fix
Improper Neutralization
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Intel Neural Compressor