Intel Integrated Performance Primitives vulnerabilities

10 known vulnerabilities affecting intel/integrated_performance_primitives.

Total CVEs
10
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH4MEDIUM6

Vulnerabilities

Page 1 of 1
CVE-2024-28952MEDIUMCVSS 5.4fixed in 2021.12.02024-11-13
CVE-2024-28952 [MEDIUM] CWE-427 CVE-2024-28952: Uncontrolled search path for some Intel(R) IPP software for Windows before version 2021.12.0 may all Uncontrolled search path for some Intel(R) IPP software for Windows before version 2021.12.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2024-28887MEDIUMCVSS 5.4fixed in 2021.112024-08-14
CVE-2024-28887 [MEDIUM] CWE-427 CVE-2024-28887: Uncontrolled search path in some Intel(R) IPP software before version 2021.11 may allow an authentic Uncontrolled search path in some Intel(R) IPP software before version 2021.11 may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2023-35121HIGHCVSS 7.8v2021.92024-02-14
CVE-2023-35121 [HIGH] CWE-284 CVE-2023-35121: Improper access control in the Intel(R) oneAPI DPC++/C++ Compiler before version 2022.2.1 for some I Improper access control in the Intel(R) oneAPI DPC++/C++ Compiler before version 2022.2.1 for some Intel(R) oneAPI Toolkits before version 2022.3.1 may allow authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2023-29162MEDIUMCVSS 6.0v2021.92024-02-14
CVE-2023-29162 [MEDIUM] CWE-276 CVE-2023-29162: Improper buffer restrictions the Intel(R) C++ Compiler Classic before version 2021.8 for Intel(R) on Improper buffer restrictions the Intel(R) C++ Compiler Classic before version 2021.8 for Intel(R) oneAPI Toolkits before version 2022.3.1 may allow a privileged user to potentially enable escalation of privilege via local access.
nvd
CVE-2023-28823HIGHCVSS 7.3fixed in 2021.82023-08-11
CVE-2023-28823 [MEDIUM] CWE-427 CVE-2023-28823: Uncontrolled search path in some Intel(R) oneAPI Toolkit and component software installers before ve Uncontrolled search path in some Intel(R) oneAPI Toolkit and component software installers before version 4.3.1.493 may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2023-27391MEDIUMCVSS 6.7fixed in 2021.82023-08-11
CVE-2023-27391 [MEDIUM] CWE-284 CVE-2023-27391: Improper access control in some Intel(R) oneAPI Toolkit and component software installers before ver Improper access control in some Intel(R) oneAPI Toolkit and component software installers before version 4.3.1.493 may allow a privileged user to potentially enable escalation of privilege via local access.
nvd
CVE-2023-22355HIGHCVSS 7.8fixed in 2021.72023-05-10
CVE-2023-22355 [MEDIUM] CWE-427 CVE-2023-22355: Uncontrolled search path in some Intel(R) oneAPI Toolkit and component software installers before ve Uncontrolled search path in some Intel(R) oneAPI Toolkit and component software installers before version 4.3.0.251 may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2018-12155MEDIUMCVSS 5.5fixed in 2019v20192018-12-05
CVE-2018-12155 [MEDIUM] CWE-200 CVE-2018-12155: Data leakage in cryptographic libraries for Intel IPP before 2019 update1 release may allow an authe Data leakage in cryptographic libraries for Intel IPP before 2019 update1 release may allow an authenticated user to potentially enable information disclosure via local access.
nvd
CVE-2017-5682HIGHCVSS 7.3v20172017-02-28
CVE-2017-5682 [HIGH] CVE-2017-5682: Intel PSET Application Install wrapper of Intel Parallel Studio XE, Intel System Studio, Intel VTune Intel PSET Application Install wrapper of Intel Parallel Studio XE, Intel System Studio, Intel VTune Amplifier, Intel Inspector, Intel Advisor, Intel MPI Library, Intel Trace Analyzer and Collector, Intel Integrated Performance Primitives, Cryptography for Intel Integrated Performance Primitives, Intel Math Kernel Library, Intel Data Analytics Acceleration Libr
nvd
CVE-2016-8100MEDIUMCVSS 5.5≤ 9.0.32016-10-10
CVE-2016-8100 [MEDIUM] CWE-200 CVE-2016-8100: Intel Integrated Performance Primitives (aka IPP) Cryptography before 9.0.4 makes it easier for loca Intel Integrated Performance Primitives (aka IPP) Cryptography before 9.0.4 makes it easier for local users to discover RSA private keys via a side-channel attack.
nvd