CVE-2024-39284: Medium severity intel advisor for oneapi vulnerability
Published Feb 12, 2025
·Updated
Uncontrolled search path for some Intel(R) Advisor software before version 2024.2 may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected Software
3 affected components
Intel Advisor<2024.2
Intel Advisor<2024.2
Intel Oneapi Base Toolkit<2024.2
Event History
Feb 12, 2025
CVE Published
via MITRE·09:19 PM
Data Sourced
via MITRE·09:19 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-39284?
CVE-2024-39284 is classified as a medium severity vulnerability.
2
How do I fix CVE-2024-39284?
To mitigate CVE-2024-39284, update your Intel Advisor software to version 2024.2 or later.
3
Who is affected by CVE-2024-39284?
CVE-2024-39284 affects versions of Intel Advisor prior to 2024.2.
4
What type of vulnerability is CVE-2024-39284?
CVE-2024-39284 is an uncontrolled search path vulnerability that can lead to privilege escalation.
5
Can CVE-2024-39284 be exploited without authentication?
CVE-2024-39284 requires an authenticated user for potential exploitation.