Oneapi Hpc Toolkit
Vendor:
First CVE: May 10, 2023 · Active for 3 years
15
Total CVEs
More Total CVEs than 92% of tracked products
7.5
Avg CVEs / Year
Higher CVE frequency than 93% of tracked products
7.1
Avg CVSS
Higher Avg CVSS than 43% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Oneapi Hpc Toolkit over time
Volume of CVEsAvg CVSS Base Score
First CVE
May 10, 2023
3 years ago
Most Recent CVE
Aug 14, 2024
709 days ago
CVE Severity & Scoring
Oneapi Hpc Toolkit15 CVEs
33%
67%
All CVEs352,294 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local14 (93.3%)
Network0 (0.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network1 (6.7%)
Attack Complexity
Low13 (86.7%)
High2 (13.3%)
Unknown0 (0.0%)
User Interaction
None12 (80.0%)
Unknown0 (0.0%)
Required3 (20.0%)
Privileges Required
Low12 (80.0%)
High3 (20.0%)
None0 (0.0%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (15 CVEs).
15 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-29242HIGH Improper access control for Intel(R) oneAPI Toolkits before version 2021.1 Beta 10 may allow an authenticated user to potentially enable escalation of privilege via local access. | May 12, 2023 | 7.8 | 24 | NO | NO |
CVE-2023-23910HIGH Out-of-bounds write for some Intel(R) Trace Analyzer and Collector software before version 2021.8.0 published Dec 2022 may allow an authenticated user to potentially escalation of | May 10, 2023 | 7.8 | 24 | NO | NO |
CVE-2023-23580HIGH Stack-based buffer overflow for some Intel(R) Trace Analyzer and Collector software before version 2021.8.0 published Dec 2022 may allow an authenticated user to potentially escala | May 10, 2023 | 7.8 | 24 | NO | NO |
CVE-2023-23569HIGH Stack-based buffer overflow for some Intel(R) Trace Analyzer and Collector software before version 2021.8.0 published Dec 2022 may allow an authenticated user to potentially enable | May 10, 2023 | 7.8 | 24 | NO | NO |
CVE-2023-22355HIGH Uncontrolled search path in some Intel(R) oneAPI Toolkit and component software installers before version 4.3.0.251 may allow an authenticated user to potentially enable escalation | May 10, 2023 | 7.8 | 23 | NO | NO |
CVE-2023-35121HIGH Improper access control in the Intel(R) oneAPI DPC++/C++ Compiler before version 2022.2.1 for some Intel(R) oneAPI Toolkits before version 2022.3.1 may allow authenticated user to | Feb 14, 2024 | 7.8 | 22 | NO | NO |
CVE-2023-24592HIGH Path traversal in the some Intel(R) oneAPI Toolkits and Component software before version 2023.1 may allow authenticated user to potentially enable escalation of privilege via loca | Nov 14, 2023 | 7.8 | 21 | NO | NO |
CVE-2023-28823HIGH Uncontrolled search path in some Intel(R) oneAPI Toolkit and component software installers before version 4.3.1.493 may allow an authenticated user to potentially enable escalation | Aug 11, 2023 | 7.3 | 21 | NO | NO |
CVE-2024-28876HIGH Uncontrolled search path for some Intel(R) MPI Library software before version 2021.12 may allow an authenticated user to potentially enable escalation of privilege via local acces | Aug 14, 2024 | 7.3 | 20 | NO | NO |
CVE-2024-28172HIGH Uncontrolled search path for some Intel(R) Trace Analyzer and Collector software before version 2022.1 may allow an authenticated user to potentially enable escalation of privilege | Aug 14, 2024 | 7.3 | 20 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (15 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (15 CVEs).
Media Mentions
Signals from CVEs in this product scope (15 CVEs).
Top CNAs Publishing CVEs For Oneapi Hpc Toolkit
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 2023.2 | 2 | 6.9 | 0.2% | 0 | 0 |
| 2023.0.0 | 1 | 7.8 | 0.2% | 0 | 0 |