Uncontrolled Search Path Vulnerability in Libva Software Could Lead to Escalation of Privilege
CVE-2023-39929

6.7MEDIUM

Key Information:

Vendor

Intel

Vendor
CVE Published:
16 May 2024

What is CVE-2023-39929?

An uncontrolled search path vulnerability exists in Intel's Libva software that could allow authenticated users to execute arbitrary code. This flaw arises from insufficient validation of search paths during execution, potentially enabling privilege escalation via local access. Users and organizations utilizing versions of Libva prior to 2.20.0 are advised to apply patches or upgrade to the latest version to mitigate the risks associated with this vulnerability. For detailed remediation, refer to Intel's advisory.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Libva software maintained by Intel(R) before version 2.20.0

References

CVSS V3.1

Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.