First published: Fri Aug 11 2023(Updated: )
Uncontrolled search path in some Intel(R) oneMKL software before version 2022.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
Credit: secure@intel.com secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Oneapi Math Kernel Library | <2022.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-25864 is high with a CVSS score of 7.8.
The Intel oneMKL software versions before 2022.0 are affected by CVE-2022-25864.
CVE-2022-25864 may allow an authenticated user to potentially enable escalation of privilege via local access due to an uncontrolled search path.
Yes, upgrading to version 2022.0 or later of the Intel oneMKL software will fix CVE-2022-25864.
You can find more information about CVE-2022-25864 in [this advisory](http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00873.html).