CVE-2023-45846Incomplete Cleanup in Intel Power Gadget

CWE-459Incomplete Cleanup3 documents3 sources
Severity
5.5MEDIUMNVD
EPSS
0.1%
top 82.36%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 16

Description

Incomplete cleanup in Intel(R) Power Gadget software for macOS all versions may allow an authenticated user to potentially enable denial of service via local access.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages1 packages

NVDintel/power_gadget< 3.6.0

🔴Vulnerability Details

2
GHSA
GHSA-3gc9-xgq4-mpq2: Incomplete cleanup in Intel(R) Power Gadget software for macOS all versions may allow an authenticated user to potentially enable denial of service vi2024-05-16
CVEList
CVE-2023-45846: Incomplete cleanup in Intel(R) Power Gadget software for macOS all versions may allow an authenticated user to potentially enable denial of service vi2024-05-16
CVE-2023-45846 — Incomplete Cleanup in Intel | cvebase