CVE-2023-28658: High severity intel oneapi math kernel library vulnerability
Published Aug 11, 2023
·Updated
Insecure inherited permissions in some Intel(R) oneMKL software before version 2022.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected Software
1 affected component
Intel oneAPI Math Kernel Library<2022.0
Event History
Aug 11, 2023
CVE Published
via MITRE·02:37 AM
Data Sourced
via MITRE·02:37 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for the insecure inherited permissions in Intel(R) oneMKL software?
The vulnerability ID is CVE-2023-28658.
2
What is the severity of CVE-2023-28658?
The severity of CVE-2023-28658 is high.
3
How can an authenticated user potentially exploit CVE-2023-28658?
An authenticated user can potentially enable escalation of privilege via local access.
4
Which version of Intel(R) oneMKL software is affected by CVE-2023-28658?
Intel(R) oneMKL software before version 2022.0 is affected by CVE-2023-28658.
5
Where can I find more information about CVE-2023-28658?
You can find more information about CVE-2023-28658 at the following link: http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00873.html