CVE-2024-36245: Intel Oneapi Base Toolkit
Medium severity, CVSS 6.7. EPSS: 0.2% chance of exploitation in the next 30 days.
Uncontrolled search path element in some Intel(R) VTune(TM) Profiler software before version 2024.2.0 may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected products
- Intel Oneapi Base Toolkit: before 2024.2 (fixed in 2024.2)
- Intel System Bring-Up Toolkit: before 2024.2.0 (fixed in 2024.2.0)
- Intel Vtune Profiler: before 2024.2 (fixed in 2024.2)
Published 2024-11-13. Last modified 2026-06-17.