CVE-2024-28169

MEDIUM

BigDL <2.5.0 - DoS

Title source: llm
STIX 2.1

Description

Cleartext transmission of sensitive information for some BigDL software maintained by Intel(R) before version 2.5.0 may allow an authenticated user to potentially enable denial of service via adjacent access.

Scores

CVSS v3 5.4
EPSS 0.0003
EPSS Percentile 7.6%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-319
Status published
Products (1)
n/a/BigDL software maintained by Intel(R) before version 2.5.0
Published Nov 13, 2024
Tracked Since Feb 18, 2026