logo

Intel Discloses Max Severity Bug in Its AI Model Compression Software

ID: d9b3c011-cf4e-5932-9395-31503fbca9bd

STIX ID: report--d9b3c011-cf4e-5932-9395-31503fbca9bd

Feed Name: Dark Reading

Threat Score
75/100

Date Published: 2024-05-17

Date Updated: 2026-04-21

Author: Jai Vijayan, Contributing Writer

...
...

Intel disclosed a critical vulnerability (CVE-2024-22476) in Intel Neural Compressor allowing unauthenticated remote code execution (CVSS 10) in versions before 2.5.0 and urged users to upgrade; the report also notes a moderate TOCTOU information-disclosure bug (CVE-2024-21792), several high-severity UEFI privilege-escalation CVEs, and highlights the growing security risks across AI software components and model infrastructure.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.