CVE-2023-22311

NameCVE-2023-22311
DescriptionImproper access control in some Intel(R) Optane(TM) PMem 100 Series Management Software before version 01.00.00.3547 may allow an authenticated user to potentially enable escalation of privilege via local access.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
ipmctl (PTS)bullseye02.00.00.3852+ds-1fixed
bookworm03.00.00.0468-1fixed
sid, trixie03.00.00.0485-1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
ipmctlsource(unstable)(not affected)

Notes

- ipmctl <not-affected> (Only affects the Intel Optane PMem 100 Series Managment Software)
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00948.html

Search for package or bug name: Reporting problems