Privilege Escalation Vulnerability in Intel Neural Compressor Software
CVE-2026-20906

5.4MEDIUM

Key Information:

Vendor

Intel

Vendor
CVE Published:
11 August 2026

What is CVE-2026-20906?

An identified vulnerability in Intel Neural Compressor software versions prior to v3.6 allows unprivileged adversaries to escalate their privileges. This may occur through local access under certain conditions, potentially requiring only passive user interaction. The flaw exists within Ring 3: User Applications and can compromise system confidentiality, integrity, and availability if exploited. Users of the affected software are advised to update to the latest version to safeguard against this security risk.

Affected Version(s)

Intel(R) Neural Compressor software before version v3.6

References

CVSS V4

Score:
5.4
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.