Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-23909


Out-of-bounds read for some Intel(R) Trace Analyzer and Collector software before version 2021.8.0 published Dec 2022 may allow an authenticated user to potentially enable information disclosure via local access.


Published

2023-05-10T14:15:30.667

Last Modified

2024-11-21T07:47:04.870

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 2.8 (LOW)

Weaknesses
  • Type: Secondary
    CWE-125
  • Type: Primary
    CWE-125

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application intel oneapi_hpc_toolkit < 2023.0.0 Yes
Application intel trace_analyzer_and_collector < 2021.8.0 Yes

References