Protection Mechanism Failure in MPI Library and Intel oneAPI HPC Toolkit - CVE-2023-27383
Published: November 23, 2023
Vulnerability identifier: #VU83467
CSH Severity: Low
CVSS v4: 8.5 [CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2023-27383
CWE-ID: CWE-693
Exploitation vector: Adjecent network
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote user to bypass implemented security restrictions.
The vulnerability exists due to insufficient implementation of security measures. A remote administrator on the local network can bypass implemented security restrictions and elevate privileges on the system.
Affected software
MPI Library
Intel oneAPI HPC Toolkit
Intel oneAPI HPC Toolkit
How to mitigate CVE-2023-27383
Install updates from vendor's website.
MPI Library - update to 2021.9
Intel oneAPI HPC Toolkit - update to 2023.1
Intel oneAPI HPC Toolkit - update to 2023.1