CVE-2023-35121
Severity CVSS v4.0:
Pending analysis
Type:
CWE-284
Improper Access Control
Publication date:
14/02/2024
Last modified:
14/01/2026
Description
Improper access control in the Intel(R) oneAPI DPC++/C++ Compiler before version 2022.2.1 for some Intel(R) oneAPI Toolkits before version 2022.3.1 may allow authenticated user to potentially enable escalation of privilege via local access.<br />
<br />
Impact
Base Score 3.x
7.80
Severity 3.x
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:intel:advisor:*:*:*:*:*:*:*:* | 2023.2 (excluding) | |
| cpe:2.3:a:intel:cluster_checker:2021.7.3:*:*:*:*:*:*:* | ||
| cpe:2.3:a:intel:distribution_for_python:2023.1:*:*:*:*:*:*:* | ||
| cpe:2.3:a:intel:inspector:*:*:*:*:*:*:*:* | 2023.2 (excluding) | |
| cpe:2.3:a:intel:integrated_performance_primitives:2021.9:*:*:*:*:*:*:* | ||
| cpe:2.3:a:intel:integrated_performance_primitives_cryptography:*:*:*:*:*:*:*:* | 2021.8 (excluding) | |
| cpe:2.3:a:intel:mpi_library:*:*:*:*:*:*:*:* | 2021.10 (excluding) | |
| cpe:2.3:a:intel:oneapi_ai_analytics_toolkit:2023.2:*:*:*:*:*:*:* | ||
| cpe:2.3:a:intel:oneapi_base_toolkit:*:*:*:*:*:*:*:* | 2023.2 (excluding) | |
| cpe:2.3:a:intel:oneapi_base_toolkit:2023.2:*:*:*:*:*:*:* | ||
| cpe:2.3:a:intel:oneapi_deep_neural_network:*:*:*:*:*:*:*:* | 2023.2 (excluding) | |
| cpe:2.3:a:intel:oneapi_deep_neural_network:2023.2:*:*:*:*:*:*:* | ||
| cpe:2.3:a:intel:oneapi_hpc_toolkit:2023.2:*:*:*:*:*:*:* | ||
| cpe:2.3:a:intel:oneapi_iot_toolkit:2023.2:*:*:*:*:*:*:* | ||
| cpe:2.3:a:intel:oneapi_math_kernel_library:*:*:*:*:*:*:*:* | 2023.2 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



