CVE-2023-27391
MEDIUMIntel oneAPI Toolkit < 2023.1 - Privilege Escalation via Improper Access Control
Title source: llmDescription
Improper access control in some Intel(R) oneAPI Toolkit and component software installers before version 4.3.1.493 may allow a privileged user to potentially enable escalation of privilege via local access.
References (1)
Core 1
Core References
Scores
CVSS v3
6.7
EPSS
0.0005
EPSS Percentile
15.6%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
total
Details
CWE
CWE-284
Status
published
Products (29)
intel/advisor_for_oneapi
< 2023.1
intel/cpu_runtime_for_opencl_applications
< 2023.1
intel/distribution_for_python_programming_language
< 2023.1
intel/dpc\+\+_compatibility_tool
< 2023.1
intel/embree_ray_tracing_kernel_library
< 2023.1
intel/fortran_compiler
< 2023.1
intel/implicit_spmd_program_compiler
< 1.19.1
intel/inspector_for_oneapi
< 2023.1
intel/integrated_performance_primitives
< 2021.8
intel/ipp_cryptography
< 2021.7.0
... and 19 more
Published
Aug 11, 2023
Tracked Since
Feb 18, 2026