Intel oneAPI Base Toolkit
cpe:2.3:a:intel:oneapi_base_toolkit:*:*:*:*:*:*:*
- < 2025.1.0
A vulnerability exists in some Intel oneAPI Toolkit and component software installers, where an uncontrolled search path may allow an authenticated user to escalate privileges through local access. This issue affects several oneAPI components, including the Base Toolkit, DPC++/C++ Compiler, and various libraries and tools, all prior to specific versions.
Exploitation of this vulnerability could lead to unauthorized privilege escalation.
Users are advised to update Intel oneAPI Toolkits and standalone component software to the latest versions. The updated toolkits can be downloaded from the Intel Developer Tools oneAPI Toolkits page, while standalone components are available from the Intel oneAPI Standalone Components page. For the DPC++/C++ Compiler for open source, version 6.0.0 or later should be downloaded from the Intel LLVM releases page.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.