VYPR
Unrated severityNVD Advisory· Published Feb 14, 2024· Updated Aug 7, 2024

CVE-2023-34315

CVE-2023-34315

Description

Incorrect default permissions in some Intel(R) VROC software before version 8.0.8.1001 may allow an authenticated user to potentially enable escalation of privilege via local access.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Incorrect default permissions in Intel VROC before 8.0.8.1001 allow authenticated users to escalate privilege locally.

Vulnerability

Incorrect default permissions in some Intel(R) Virtual RAID on CPU (VROC) software prior to version 8.0.8.1001 may allow an authenticated user to exploit the misconfiguration. The vulnerability stems from overly permissive access controls set during installation, which can be leveraged by a local user with valid credentials. [1]

Exploitation

An attacker must have local access to the system and valid authentication credentials. No additional user interaction or special privileges are required beyond standard user rights. The attacker can exploit the incorrect default permissions to modify or execute files or registry keys that are normally restricted, thereby gaining elevated access. [1]

Impact

Successful exploitation enables the attacker to escalate their privileges on the affected system, potentially gaining administrative or higher-level access. This could lead to full compromise of the system, including unauthorized data access, modification, or denial of service. [1]

Mitigation

Intel has released version 8.0.8.1001 of the VROC software to address this issue. Users should update to this version or later. No workarounds are provided in the advisory. The vulnerability is not listed in the Known Exploited Vulnerabilities (KEV) catalog as of the publication date. [1]

References
  1. INTEL-SA-00953

AI Insight generated on May 26, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

2
  • Intel(R)/VROC softwaredescription
  • Intel/VROCllm-fuzzy
    Range: <8.0.8.1001

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.