CVE-2024-22476: Input Validation
Published May 16, 2024
·Updated
Improper input validation in some Intel(R) Neural Compressor software before version 2.5.0 may allow an unauthenticated user to potentially enable escalation of privilege via remote access.
Affected Software
1 affected component
Intel Neural Compressor<2.5.0
Event History
May 14, 2024
News Published
via The Register·10:15 PM
News Published
via The Register·10:19 PM
May 16, 2024
CVE Published
via MITRE·08:46 PM
Data Sourced
via MITRE·08:46 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-22476?
CVE-2024-22476 is considered a high severity vulnerability due to improper input validation allowing possible privilege escalation.
2
How do I fix CVE-2024-22476?
To remediate CVE-2024-22476, upgrade the Intel Neural Compressor software to version 2.5.0 or later.
3
Who is affected by CVE-2024-22476?
CVE-2024-22476 affects users of Intel Neural Compressor software versions prior to 2.5.0.
4
What type of vulnerability is CVE-2024-22476?
CVE-2024-22476 is categorized as an input validation vulnerability.
5
Can CVE-2024-22476 be exploited remotely?
Yes, CVE-2024-22476 can potentially be exploited by an unauthenticated remote user to escalate privileges.