CVE-2023-32641 HIGH

CVE-2023-32641

Vendor N/A
Product Intel(R) QAT
Weakness CWE-20 · Input validation
Published November 14, 2023
Last update August 30, 2024

CVSS base score

7.3/10
Attack vector Adjacent
Attack complexity High
Privileges required Low
User interaction Required
Confidentiality None
Integrity High

CVSS vector

CVSS:3.1/AV:A/AC:H/PR:L/UI:R/S:C/C:N/I:H/A:H

What the vulnerability does

01Description

Improper input validation in firmware for Intel(R) QAT before version QAT20.L.1.0.40-00004 may allow escalation of privilege and denial of service via adjacent access.

Key dates

02Disclosure timeline

November 14, 2023 CVE published
August 30, 2024 Record updated