CVE-2024-21784: High severity intel cryptography for intel integrated performance primitives vulnerability
Published Aug 14, 2024
·Updated
Uncontrolled search path for some Intel(R) IPP Cryptography software before version 2021.11 may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected Software
3 affected components
Intel Ipp Cryptography<2021.11
Intel Integrated Performance Primitives Cryptography<2021.11.0
Intel Oneapi Base Toolkit<2024.1
Event History
Aug 14, 2024
CVE Published
via MITRE·01:45 PM
Data Sourced
via MITRE·01:45 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-21784?
CVE-2024-21784 has a severity rating that suggests it could allow escalation of privilege for authenticated users.
2
How do I fix CVE-2024-21784?
To fix CVE-2024-21784, upgrade Intel IPP Cryptography to version 2021.11 or later.
3
Who is affected by CVE-2024-21784?
CVE-2024-21784 affects users of Intel IPP Cryptography software versions earlier than 2021.11.
4
What type of attack does CVE-2024-21784 allow?
CVE-2024-21784 may allow an authenticated user to enable escalation of privilege via local access.
5
When was CVE-2024-21784 discovered?
CVE-2024-21784 was identified prior to the release of the affected software versions, specifically before 2021.11.