CVE-2024-26025: High severity intel advisor for oneapi vulnerability
Published Aug 14, 2024
·Updated
Incorrect default permissions for some Intel(R) Advisor software before version 2024.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected Software
2 affected components
Intel Advisor<2024.1
Intel Oneapi Base Toolkit<2024.1
Event History
Aug 14, 2024
CVE Published
via MITRE·01:45 PM
Data Sourced
via MITRE·01:45 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-26025?
CVE-2024-26025 is classified as a medium severity vulnerability due to its potential for escalation of privilege.
2
How do I fix CVE-2024-26025?
To fix CVE-2024-26025, upgrade Intel Advisor software or Intel oneAPI Base Toolkit to version 2024.1 or later.
3
Who is affected by CVE-2024-26025?
Users of Intel(R) Advisor software and Intel oneAPI Base Toolkit prior to version 2024.1 are affected by CVE-2024-26025.
4
What type of vulnerability is CVE-2024-26025?
CVE-2024-26025 is an access control vulnerability that may allow unauthorized escalation of privileges.
5
Is local access required to exploit CVE-2024-26025?
Yes, local access is required to exploit CVE-2024-26025 due to incorrect default permissions.