Lucene search

K
cveIntelCVE-2023-30767
HistoryFeb 14, 2024 - 2:15 p.m.

CVE-2023-30767

2024-02-1414:15:50
CWE-92
intel
web.nvd.nist.gov
8
cve-2023-30767
intel
optimization for tensorflow
buffer restrictions
privilege escalation
nvd

CVSS3

5.5

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

HIGH

Availability Impact

LOW

CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:L/I:H/A:L

EPSS

0

Percentile

9.0%

Improper buffer restrictions in Intel® Optimization for TensorFlow before version 2.13.0 may allow an authenticated user to potentially enable escalation of privilege via local access.

Affected configurations

Vulners
Node
inteloptimization_for_tensorflowRange<2.13.0
VendorProductVersionCPE
inteloptimization_for_tensorflow*cpe:2.3:a:intel:optimization_for_tensorflow:*:*:*:*:*:*:*:*

CNA Affected

[
  {
    "vendor": "n/a",
    "product": "TensorFlow",
    "versions": [
      {
        "version": "before version 2.13.0",
        "status": "affected"
      }
    ],
    "defaultStatus": "unaffected"
  }
]

CVSS3

5.5

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

HIGH

Availability Impact

LOW

CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:L/I:H/A:L

EPSS

0

Percentile

9.0%