PT-2024-8903 · Intel · Intel High Level Synthesis Compiler

·

CVE-2024-23907

·

Published

2024-08-13

·

Updated

2024-09-06

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Intel(R) High Level Synthesis Compiler versions prior to 23.4
Description: The issue is related to an uncontrolled search path in some Intel(R) High Level Synthesis Compiler software. This may allow an authenticated user to potentially enable escalation of privilege via local access.
Recommendations: For versions prior to 23.4, update to version 23.4 or later to resolve the issue.

Fix

Uncontrolled Search Path Element

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2024-10570
CVE-2024-23907

Affected Products

Intel High Level Synthesis Compiler