CVE-2023-22656: Low severity Intel Media Sdk vulnerability
Published May 16, 2024
·Updated
Out-of-bounds read in Intel(R) Media SDK and some Intel(R) oneVPL software before version 23.3.5 may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected Software
2 affected components
Intel Media Sdk<23.3.5
Intel oneVPL<23.3.5
Event History
May 16, 2024
CVE Published
via MITRE·08:47 PM
Data Sourced
via MITRE·08:47 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-22656?
CVE-2023-22656 is classified as having a high severity due to the potential for privilege escalation.
2
How do I fix CVE-2023-22656?
To fix CVE-2023-22656, upgrade to Intel Media SDK and Intel oneVPL version 23.3.5 or later.
3
Who is affected by CVE-2023-22656?
CVE-2023-22656 affects users of Intel Media SDK and Intel oneVPL versions prior to 23.3.5.
4
Can CVE-2023-22656 be exploited remotely?
CVE-2023-22656 cannot be exploited remotely as it requires local access to the affected software.
5
What type of vulnerability is CVE-2023-22656?
CVE-2023-22656 is an out-of-bounds read vulnerability, which could lead to information disclosure or privilege escalation.