Intel Discloses Max Severity Bug in Its AI Model Compression Software
ID: d9b3c011-cf4e-5932-9395-31503fbca9bd
STIX ID: report--d9b3c011-cf4e-5932-9395-31503fbca9bd
Feed Name: Dark Reading
Threat Score
Intel disclosed a critical vulnerability (CVE-2024-22476) in Intel Neural Compressor allowing unauthenticated remote code execution (CVSS 10) in versions before 2.5.0 and urged users to upgrade; the report also notes a moderate TOCTOU information-disclosure bug (CVE-2024-21792), several high-severity UEFI privilege-escalation CVEs, and highlights the growing security risks across AI software components and model infrastructure.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
