CVE-2023-27517

See a problem?
Source
https://nvd.nist.gov/vuln/detail/CVE-2023-27517
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-27517.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-27517
Related
Published
2024-02-14T14:15:47Z
Modified
2024-09-18T03:23:20.429682Z
Summary
[none]
Details

Improper access control in some Intel(R) Optane(TM) PMem software before versions 01.00.00.3547, 02.00.00.3915, 03.00.00.0483 may allow an athenticated user to potentially enable escalation of privilege via local access.

References

Affected packages

Debian:11 / ipmctl

Package

Name
ipmctl
Purl
pkg:deb/debian/ipmctl?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

02.*

02.00.00.3852+ds-1
02.00.00.3885+ds-1

03.*

03.00.00.0407-1
03.00.00.0421-1
03.00.00.0421-2
03.00.00.0423-1
03.00.00.0429-1
03.00.00.0438-1
03.00.00.0439-1
03.00.00.0462-1
03.00.00.0468-1
03.00.00.0485-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:12 / ipmctl

Package

Name
ipmctl
Purl
pkg:deb/debian/ipmctl?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

03.*

03.00.00.0468-1
03.00.00.0485-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:13 / ipmctl

Package

Name
ipmctl
Purl
pkg:deb/debian/ipmctl?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
03.00.00.0485-1

Affected versions

03.*

03.00.00.0468-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}