VYPR
Unrated severityNVD Advisory· Published Feb 14, 2024· Updated Mar 20, 2025

CVE-2023-29162

CVE-2023-29162

Description

Improper buffer restrictions the Intel(R) C++ Compiler Classic before version 2021.8 for Intel(R) oneAPI Toolkits before version 2022.3.1 may allow a privileged user to potentially enable escalation of privilege via local access.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

A buffer restriction flaw in Intel C++ Compiler Classic before 2021.8 allows a privileged local user to escalate privileges.

Vulnerability

An improper buffer restrictions vulnerability exists in the Intel(R) C++ Compiler Classic before version 2021.8 for Intel(R) oneAPI Toolkits before version 2022.3.1 [1]. The issue resides in how the compiler handles certain buffer operations, potentially allowing memory corruption under specific conditions that require local access and elevated privileges [1].

Exploitation

An attacker must have local access to the system and already possess sufficient privileges (e.g., a user account with limited administrative rights) to trigger the vulnerable code path [1]. The exploitation sequence involves manipulating inputs to the compiler in a way that bypasses buffer size checks, leading to a memory corruption condition [1].

Impact

Successful exploitation could allow an attacker to escalate their privileges on the affected system [1]. The exact level of compromise depends on the execution context, but the vulnerability is rated as high severity (CVSS 7.8) [1].

Mitigation

Intel has released Intel(R) C++ Compiler Classic version 2021.8 as part of Intel(R) oneAPI Toolkits version 2022.3.1 to address this issue [1]. Users should update to these fixed versions. No workaround is documented in the available reference [1].

References
  1. INTEL-SA-00988

AI Insight generated on May 25, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

3

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.