CVE-2024-29015: Medium severity Intel oneAPI vulnerability
Uncontrolled search path in some Intel(R) VTune(TM) Profiler software before versions 2024.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Intel VTune Profilerto a version that resolves this vulnerability.Fixed in 2024.1
Event History
Frequently Asked Questions
What is the severity of CVE-2024-29015?
CVE-2024-29015 has a severity rating that indicates a potential escalation of privilege risk for authenticated users.
How do I fix CVE-2024-29015?
To mitigate CVE-2024-29015, upgrade your Intel VTune Profiler software to version 2024.1 or later.
Who is affected by CVE-2024-29015?
CVE-2024-29015 affects users of Intel VTune Profiler and Intel oneAPI Base Toolkit versions prior to 2024.1.
What type of vulnerability is CVE-2024-29015?
CVE-2024-29015 is classified as an uncontrolled search path vulnerability.
Can CVE-2024-29015 be exploited remotely?
CVE-2024-29015 requires local access to exploit, thus it cannot be exploited remotely without authentication.