Stack-Based Buffer Overflow in Intel Trace Analyzer and Collector Software
CVE-2023-23580
4.8MEDIUM
Key Information:
- Vendor
- Intel
- Vendor
- CVE Published:
- 10 May 2023
Summary
The Intel Trace Analyzer and Collector software prior to version 2021.8.0 is vulnerable to a stack-based buffer overflow that could be exploited by an authenticated user. This vulnerability allows for potential escalation of privileges via local access, posing a risk to the integrity and security of the affected systems. Users are advised to update to the latest version to mitigate this risk.
Affected Version(s)
Intel(R) Trace Analyzer and Collector software before version 2021.8.0 published Dec 2022
References
CVSS V3.1
Score:
4.8
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved