CVE-2023-27506DEPRECATED: Improper Sanitization of Custom Special Characters in Intel Optimization FOR Tensorflow

Severity
7.8HIGHNVD
CNA5.5
EPSS
0.1%
top 81.86%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 11

Description

Improper buffer restrictions in the Intel(R) Optimization for Tensorflow software before version 2.12 may allow an authenticated user to potentially enable escalation of privilege via local access.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages1 packages

NVDintel/optimization< 2.12

🔴Vulnerability Details

3
OSV
Authenticated Local Privilege Escalation vulnerability in Intel Optimization for Tensorflow2023-08-11
GHSA
Authenticated Local Privilege Escalation vulnerability in Intel Optimization for Tensorflow2023-08-11
CVEList
CVE-2023-27506: Improper buffer restrictions in the Intel(R) Optimization for Tensorflow software before version 22023-08-11
CVE-2023-27506 — Intel vulnerability | cvebase