The vendor explicitly identifies these products as affected by this CVE.
- pcm.src as a component of Red Hat Enterprise Linux 10
- pcm.src as a component of Red Hat Enterprise Linux 8
- pcm.src as a component of Red Hat Enterprise Linux 9
- Summary
- A flaw was found in Intel Performance Counter Monitor (Intel PCM). An unprivileged, authenticated local attacker could exploit an untrusted search path vulnerability. This could lead to an escalation of privilege, allowing the attacker to gain higher access rights. The vulnerability has a high impact on the confidentiality, integrity, and availability of the affected system.
- Remediation
- To mitigate this issue, restrict write permissions on directories along the system execution path to trusted administrative accounts, or run Intel PCM binary tools exclusively from secure, root-owned installation paths.
