VYPR
Medium severity5.5NVD Advisory· Published Nov 13, 2024· Updated Apr 15, 2026

CVE-2024-29085

CVE-2024-29085

Description

Improper access control for some BigDL software maintained by Intel(R) before version 2.5.0 may allow an authenticated user to potentially enable escalation of privilege via adjacent access.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Improper access control in Intel BigDL before 2.5.0 allows authenticated users to escalate privileges via adjacent network access.

Vulnerability

Overview CVE-2024-29085 is an improper access control vulnerability in Intel BigDL software prior to version 2.5.0. The issue stems from insufficient enforcement of access restrictions on certain functionalities, potentially allowing an authenticated user to bypass intended security boundaries [1].

Exploitation

Conditions Exploitation requires the attacker to have valid authentication credentials and adjacent network access to the affected system. The vulnerability does not require any special privileges beyond a standard user account, making it accessible to internal network users or compromised accounts [1].

Impact

Successful exploitation could lead to privilege escalation, enabling the attacker to perform actions or access resources typically reserved for higher-privileged users. This could compromise the confidentiality, integrity, or availability of the BigDL application and underlying data [1].

Mitigation

Intel has addressed this vulnerability in BigDL version 2.5.0. Users are strongly recommended to upgrade to this or a later version to remediate the issue. No workarounds provided [1].

References
  1. INTEL-SA-01146

AI Insight generated on May 20, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.