CVE-2021-33071Incorrect Default Permissions in Intel Oneapi Rendering Toolkit

Severity
7.8HIGHNVD
EPSS
0.0%
top 88.96%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 17
Latest updateNov 18

Description

Incorrect default permissions in the installer for the Intel(R) oneAPI Rendering Toolkit before version 2021.2 may allow an authenticated user to potentially enable escalation of privilege via local access.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-xp3r-c9h3-vjc7: Incorrect default permissions in the installer for the Intel(R) oneAPI Rendering Toolkit before version 20212021-11-18
CVEList
CVE-2021-33071: Incorrect default permissions in the installer for the Intel(R) oneAPI Rendering Toolkit before version 20212021-11-17