# CVE-2023-22840

## Summary

- **CVE ID:** CVE-2023-22840
- **Severity:** LOW
- **CVSS Score:** 3.3 (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L)
- **CWE:** CWE-86
- **Published:** Aug 11, 2023
- **Last Modified:** Mar 13, 2026

## Description

Improper neutralization in software for the Intel(R) oneVPL GPU software before version 22.6.5 may allow an authenticated user to potentially enable denial of service via local access.

## Affected Products

- n/a — Intel(R) oneVPL GPU software (before version 22.6.5)

## References

- [CNA](http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00818.html)
- [CNA](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/J7RNFPWOSFII2JE2KDRHPLJANZC3YATW/)
- [CNA](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/TULYSWHC3X76AIGGMUSLBTWOXNND6IEV/)
- [CNA](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/L27GRS7E45IOCZ44VQX2NJ33GVRBWHBS/)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.06%
- **EPSS Percentile:** 18.5

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-11._