Potential Escalation of Privilege Vulnerability in Intel DSA Software
CVE-2023-39425

7.8HIGH

Key Information:

Vendor
Intel
Vendor
CVE Published:
14 February 2024

Summary

The vulnerability in Intel DSA software arises from improper access control practices, which may allow authenticated users to potentially escalate their privileges through local access. This issue affects versions of the software released before 23.4.33, posing a potential security risk if not addressed promptly. Users are encouraged to review their software version and apply necessary security patches to mitigate any risks associated with this vulnerability.

Affected Version(s)

Intel(R) DSA software before version 23.4.33

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.