CVE-2023-30767DEPRECATED: Improper Sanitization of Custom Special Characters in Intel Optimization FOR Tensorflow

Severity
6.7MEDIUMNVD
CNA5.5
EPSS
0.1%
top 78.79%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 14
Latest updateJan 14

Description

Improper buffer restrictions in Intel(R) Optimization for TensorFlow before version 2.13.0 may allow an authenticated user to potentially enable escalation of privilege via local access.

CVSS vector

CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:HExploitability: 0.8 | Impact: 5.9

Affected Packages2 packages

CVEListV5intel/optimization_for_tensorflowbefore version 2.13.0
NVDintel/optimization< 2.13.0

🔴Vulnerability Details

2
GHSA
GHSA-7cxm-qx65-mv3h: Improper buffer restrictions in Intel(R) Optimization for TensorFlow before version 22026-01-14
CVEList
CVE-2023-30767: Improper buffer restrictions in Intel(R) Optimization for TensorFlow before version 22024-02-14
CVE-2023-30767 — Intel vulnerability | cvebase