CVE-2023-29162
Estado: AnalizadaMedia (6)—
Improper buffer restrictions the Intel(R) C++ Compiler Classic before version 2021.8 for Intel(R) oneAPI Toolkits before version 2022.3.1 may allow a privileged user to potentially enable escalation of privilege via local access.
CVSS
- Versión: 3.1
- Vector: CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:L
- Puntuación base: 6
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 0.17%
- Percentil entre todas las CVEs puntuadas: 6
- Fecha de la puntuación: 5/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (16)
Intel — AdvisorIntel — Cluster CheckerIntel — Distribution FOR PythonIntel — InspectorIntel — Integrated Performance PrimitivesIntel — Integrated Performance Primitives CryptographyIntel — MPI LibraryIntel — Oneapi AI Analytics ToolkitIntel — Oneapi Base ToolkitIntel — Oneapi Deep Neural NetworkIntel — Oneapi HPC ToolkitIntel — Oneapi IOT ToolkitIntel — Oneapi Math Kernel LibraryIntel — Threading Building BlocksIntel — Trace Analyzer AND CollectorIntel — Vtune Profiler
CWE
- CWE-276
Referencias
JSON original (NVD)
Mostrar
{
"id": "CVE-2023-29162",
"cveTags": [],
"metrics": {
"ssvcV203": [
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"ssvcData": {
"id": "CVE-2023-29162",
"role": "CISA Coordinator",
"options": [
{
"exploitation": "none"
},
{
"automatable": "no"
},
{
"technicalImpact": "total"
}
],
"version": "2.0.3",
"timestamp": "2024-08-16T18:23:46.476234Z"
}
}
],
"cvssMetricV31": [
{
"type": "Secondary",
"source": "secure@intel.com",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.1",
"baseScore": 6,
"attackVector": "LOCAL",
"baseSeverity": "MEDIUM",
"vectorString": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:L",
"integrityImpact": "HIGH",
"userInteraction": "NONE",
"attackComplexity": "HIGH",
"availabilityImpact": "LOW",
"privilegesRequired": "HIGH",
"confidentialityImpact": "HIGH"
},
"impactScore": 5.5,
"exploitabilityScore": 0.5
}
]
},
"affected": [
{
"source": "secure@intel.com",
"affectedData": [
{
"vendor": "n/a",
"product": "Intel(R) C++ Compiler Classic",
"versions": [
{
"status": "affected",
"version": "before version 2021.8"
}
],
"defaultStatus": "unaffected"
}
]
},
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"affectedData": [
{
"cpes": [
"cpe:2.3:a:intel:oneapi_toolkits:-:*:*:*:*:*:*:*"
],
"vendor": "intel",
"product": "oneapi_toolkits",
"versions": [
{
"status": "affected",
"version": "0",
"lessThan": "2022.3.1",
"versionType": "custom"
}
],
"defaultStatus": "unknown"
},
{
"cpes": [
"cpe:2.3:a:intel:cplusplus_compiler_classic:*:*:*:*:*:*:*:*"
],
"vendor": "intel",
"product": "cplusplus_compiler_classic",
"versions": [
{
"status": "affected",
"version": "0",
"lessThan": "2021.8",
"versionType": "custom"
}
],
"defaultStatus": "unknown"
}
]
}
],
"published": "2024-02-14T14:15:49.777",
"references": [
{
"url": "https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00988.html",
"tags": [
"Vendor Advisory"
],
"source": "secure@intel.com"
},
{
"url": "https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00988.html",
"tags": [
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Analyzed",
"weaknesses": [
{
"type": "Secondary",
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"description": [
{
"lang": "en",
"value": "CWE-276"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Improper buffer restrictions the Intel(R) C++ Compiler Classic before version 2021.8 for Intel(R) oneAPI Toolkits before version 2022.3.1 may allow a privileged user to potentially enable escalation of privilege via local access.\n\n"
},
{
"lang": "es",
"value": "Las restricciones inadecuadas del búfer en algunos compiladores Intel(R) C++ Classic anteriores a la versión 2021.8 pueden permitir que un usuario autenticado habilite potencialmente la escalada de privilegios a través del acceso local."
}
],
"lastModified": "2026-06-17T05:49:31.013",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:intel:advisor:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "0F19FC1B-ABBC-4AD1-A3EF-FEF6CA6DF90C",
"versionEndExcluding": "2023.2"
},
{
"criteria": "cpe:2.3:a:intel:cluster_checker:2021.7.3:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "535F8418-033A-4EAC-9E9B-2BBA83CB885B"
},
{
"criteria": "cpe:2.3:a:intel:distribution_for_python:2023.1:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "7F7A8ABC-B220-46D2-A6CE-FDEE08388C49"
},
{
"criteria": "cpe:2.3:a:intel:inspector:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "DF8676B2-8B07-4489-AE24-5AFF7B318E73",
"versionEndExcluding": "2023.2"
},
{
"criteria": "cpe:2.3:a:intel:integrated_performance_primitives:2021.9:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "9A2EE063-5A38-40DD-A2C3-BF10664085AF"
},
{
"criteria": "cpe:2.3:a:intel:integrated_performance_primitives_cryptography:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "1DA1F6A6-E2FC-4243-81E3-2E8CA4AA4CD2",
"versionEndExcluding": "2021.8"
},
{
"criteria": "cpe:2.3:a:intel:mpi_library:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "C6B7FC0C-D3DA-40A2-8D69-2056656F84A0",
"versionEndExcluding": "2021.10"
},
{
"criteria": "cpe:2.3:a:intel:oneapi_ai_analytics_toolkit:2023.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "16B6BCCB-F33F-49B6-B87B-CC93E30C82B1"
},
{
"criteria": "cpe:2.3:a:intel:oneapi_base_toolkit:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "2C7E4E29-75C3-4B97-AB86-C82A3214D558",
"versionEndExcluding": "2023.2"
},
{
"criteria": "cpe:2.3:a:intel:oneapi_base_toolkit:2023.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "11501F04-FAA8-44F9-BD4F-105458A6252B"
},
{
"criteria": "cpe:2.3:a:intel:oneapi_deep_neural_network:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "4B6DA864-1A74-4706-832B-2D8453A55D06",
"versionEndExcluding": "2023.2"
},
{
"criteria": "cpe:2.3:a:intel:oneapi_deep_neural_network:2023.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "76639D6F-2583-455B-8A0E-7B412C18C485"
},
{
"criteria": "cpe:2.3:a:intel:oneapi_hpc_toolkit:2023.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "7E2D9438-CC9E-4070-97E6-6300064CF136"
},
{
"criteria": "cpe:2.3:a:intel:oneapi_iot_toolkit:2023.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "776C3236-F480-446D-93ED-E1A8D9CBA108"
},
{
"criteria": "cpe:2.3:a:intel:oneapi_math_kernel_library:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "AFF32E88-710F-4622-AC69-4E6A04B8F9D4",
"versionEndExcluding": "2023.2"
},
{
"criteria": "cpe:2.3:a:intel:threading_building_blocks:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "8FD857AA-0809-464A-A0FF-13CF527A83AE",
"versionEndExcluding": "2021.10"
},
{
"criteria": "cpe:2.3:a:intel:trace_analyzer_and_collector:2021.10.0:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "68072344-62DC-40C5-9704-1ABCF20E1701"
},
{
"criteria": "cpe:2.3:a:intel:vtune_profiler:*:*:*:*:*:-:*:*",
"vulnerable": true,
"matchCriteriaId": "ABB740DA-24E8-44DF-9E15-C12BD497AFE6",
"versionEndExcluding": "2023.2"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "secure@intel.com"
}