CVE-2023-27391

MEDIUM

Intel oneAPI Toolkit < 2023.1 - Privilege Escalation via Improper Access Control

Title source: llm
STIX 2.1

Description

Improper access control in some Intel(R) oneAPI Toolkit and component software installers before version 4.3.1.493 may allow a privileged user to potentially enable escalation of privilege via local access.

References (1)

Core 1

Scores

CVSS v3 6.7
EPSS 0.0005
EPSS Percentile 15.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-284
Status published
Products (29)
intel/advisor_for_oneapi < 2023.1
intel/cpu_runtime_for_opencl_applications < 2023.1
intel/distribution_for_python_programming_language < 2023.1
intel/dpc\+\+_compatibility_tool < 2023.1
intel/embree_ray_tracing_kernel_library < 2023.1
intel/fortran_compiler < 2023.1
intel/implicit_spmd_program_compiler < 1.19.1
intel/inspector_for_oneapi < 2023.1
intel/integrated_performance_primitives < 2021.8
intel/ipp_cryptography < 2021.7.0
... and 19 more
Published Aug 11, 2023
Tracked Since Feb 18, 2026