CVE-2024-33617

MEDIUM

Intel(R) QAT Engine <v1.6.1 - Info Disclosure

Title source: llm
STIX 2.1

Description

Insufficient control flow management in some Intel(R) QAT Engine for OpenSSL software before version v1.6.1 may allow information disclosure via network access.

Scores

CVSS v3 5.9
EPSS 0.0003
EPSS Percentile 9.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-691
Status published
Products (1)
n/a/Intel(R) QAT Engine for OpenSSL software before version v1.6.1
Published Nov 13, 2024
Tracked Since Feb 18, 2026