CVE-2023-29242: High severity intel oneapi toolkits vulnerability
Published May 12, 2023
·Updated
Improper access control for Intel(R) oneAPI Toolkits before version 2021.1 Beta 10 may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected Software
6 affected components
Intel Oneapi Ai Analytics Toolkit<=2021.1
Intel Oneapi Base Toolkit<=2021.1
Intel Oneapi Dl Framework Developer Toolkit<=2021.1
Intel oneAPI HPC Toolkit<=2021.1
Intel Oneapi Iot Toolkit<=2021.1
Intel oneAPI Rendering Toolkit<=2021.1
Event History
May 12, 2023
CVE Published
via MITRE·02:01 PM
Data Sourced
via MITRE·02:01 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2023-29242.
2
What is the affected software?
The affected software includes Intel OneAPI Toolkits before version 2021.1 Beta 10.
3
What is the severity of CVE-2023-29242?
The severity of CVE-2023-29242 is high with a CVSS score of 7.8.
4
How does CVE-2023-29242 impact users?
CVE-2023-29242 may allow an authenticated user to potentially enable escalation of privilege via local access.
5
How can the vulnerability be fixed?
To fix CVE-2023-29242, users should update their Intel OneAPI Toolkits to version 2021.1 Beta 10 or later.