CVE-2024-21783

CVSS 3.1 Score 4.8 of 10 (medium)

Details

Published Nov 13, 2024
Updated: Nov 15, 2024
CWE ID 190

Summary

CVE-2024-21783 is a newly identified vulnerability affecting Intel(R) VPL software versions prior to 24.1.4. This issue involves an integer overflow, which can be exploited by authenticated users to potentially escalate their privileges and gain unauthorized access to higher levels of system functionality. The vulnerability is local in nature and does not require any network access, making it a significant risk for organizations that use affected software. Successful exploitation of this vulnerability could lead to serious security implications, including unintended system modifications or data breaches. Organizations are strongly advised to upgrade their Intel(R) VPL software to the latest version as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share