CVE Vulnerabilities

CVE-2024-29079

Insufficient Control Flow Management

Published: Nov 13, 2024 | Modified: Mar 07, 2025
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Insufficient control flow management in some Intel(R) VROC software before version 8.6.0.3001 may allow an authenticated user to potentially enable escalation of privilege via local access.

Weakness

The code does not sufficiently manage its control flow during execution, creating conditions in which the control flow can be modified in unexpected ways.

Affected Software

Name Vendor Start Version End Version
Virtual_raid_on_cpu Intel * 8.6.0.3001 (excluding)

References