First published: Wed Feb 14 2024(Updated: )
Insecure inherited permissions in some Intel(R) Ethernet tools and driver install software may allow an authenticated user to potentially enable escalation of privilege via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Administrative Tools for Intel Network Adapters | <28.2 | |
Intel Ethernet Connections Boot Utility\, Preboot Images\, And Efi Drivers | <28.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-33870 has a severity level that indicates potential escalation of privilege due to insecure inherited permissions.
To fix CVE-2023-33870, ensure that you upgrade to the latest version of the affected software, specifically version above 28.2.
CVE-2023-33870 affects users of Intel Administrative Tools for Intel Network Adapters and Intel Ethernet Connections Boot Utility software.
An attacker with local access could potentially escalate privileges due to insecure permissions inherent in the software.
Yes, local access is required to exploit the vulnerability identified in CVE-2023-33870.