CVE-2024-37027

Severity
5.2MEDIUM
EPSS
0.1%
top 68.62%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 13

Description

Improper Input validation in some Intel(R) VTune(TM) Profiler software before version 2024.2.0 may allow an authenticated user to potentially enable denial of service via local access.

CVSS vector

CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:P/VC:L/VI:L/VA:H/SC:N/SI:N/SA:N

Affected Packages4 packages

CVEListV5intel(r)_vtune(tm)_profiler_softwarebefore version 2024.2.0
NVDintel/vtune_profiler< 2024.2

🔴Vulnerability Details

2
GHSA
GHSA-c665-gh2m-5vg4: Improper Input validation in some Intel(R) VTune(TM) Profiler software before version 20242024-11-13
CVEList
CVE-2024-37027: Improper Input validation in some Intel(R) VTune(TM) Profiler software before version 20242024-11-13
CVE-2024-37027 (MEDIUM CVSS 5.2) | Improper Input validation in some I | cvebase.io