← Back

CVE-2024-23907

nvd nist
Published: Aug 14, 2024Modified: Jun 17, 2026

JSON object

Loading...
5.4
Vector
CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Show more
CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XShow less
Source: secure@intel.com (Secondary)

Description

Uncontrolled search path in some Intel(R) High Level Synthesis Compiler software before version 23.4 may allow an authenticated user to potentially enable escalation of privilege via local access.

Affected (3)

3 products
High Level Synthesis Compiler
Oneapi Dpc++/c++ Compiler
Quartus Prime
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Before 23.4
Before 2024.1
Before 23.4

Timeline

No history available yet.