CVE-2023-27506

MEDIUM

Intel Optimization for TensorFlow < 2.12 - Authenticated Privilege Escalation via Improper Buffer Restrictions

Title source: llm
STIX 2.1

Description

Improper buffer restrictions in the Intel(R) Optimization for Tensorflow software before version 2.12 may allow an authenticated user to potentially enable escalation of privilege via local access.

References (1)

Core 1

Scores

CVSS v3 5.5
EPSS 0.0006
EPSS Percentile 19.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:L/I:H/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-119 CWE-92
Status published
Products (4)
intel/optimization_for_tensorflow < 2.12
pypi/intel-tensorflow 0 - 2.12PyPI
pypi/intel-tensorflow-avx512 0 - 2.12PyPI
pypi/tensorflow-intel 0 - 2.12PyPI
Published Aug 11, 2023
Tracked Since Feb 18, 2026