PT-2026-70284 · Intel · Intel Extension For Tensorflow
CVE-2026-20728
·
Published
2026-08-11
·
Updated
2026-08-12
CVSS v4.0
5.4
Medium
| Vector | AV:L/AC:L/AT:P/PR:H/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X |
Name of the Vulnerable Software and Affected Versions
Intel Extension for TensorFlow versions prior to 2.15.0.3
Description
A protection mechanism failure within Ring 3 (User Applications) may allow a local adversary with privileged user access to escalate privileges. This issue requires passive user interaction and can be triggered via a low complexity attack without special internal knowledge, potentially impacting the confidentiality, integrity, and availability of the system.
Recommendations
Update Intel Extension for TensorFlow to version 2.15.0.3 or later.
Fix
Protection Mechanism Failure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Intel Extension For Tensorflow