CVE-2024-37181

CVSS 3.1 Score 2.6 of 10 (low)

Details

Published Jan 16, 2025
CWE ID 367

Summary

CVE-2024-37181 is a vulnerability affecting some versions of Intel(R) Neural Compressor software. This issue involves a time-of-check time-of-use race condition, which can allow an authenticated user to potentially disclose sensitive information through adjacent access. The flaw occurs during the software's processing, enabling an attacker with appropriate privileges to manipulate data and gain unintended access to information. This vulnerability could pose a risk to organizations using the affected software, necessitating prompt patching or mitigation measures.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share