Insecure Inherited Permissions in Intel oneMKL Software
CVE-2023-28658
6.7MEDIUM
Summary
The Intel oneMKL software before version 2022.0 contains insecure inherited permissions that may allow an authenticated user with local access to escalate privileges. This vulnerability can lead to unauthorized access and manipulation of system resources, emphasizing the need for users to update to the latest version to mitigate risks.
Affected Version(s)
Intel(R) oneMKL software before version 2022.0
References
CVSS V3.1
Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved