Intel Ethernet Controller E810 Out-of-Bounds Write Vulnerability Allowing Denial-of-Service

Vulnerability

A denial-of-service vulnerability has been identified in the firmware for some Intel Ethernet Controller E810 models, prior to version cvl fw 1.7.8.x, within Ring 0: Bare Metal OS. This vulnerability arises from an out-of-bounds write, which may be exploited by a system software adversary with privileged user access. The attack, characterized by low complexity, can lead to a denial-of-service condition. The issue may occur through local access, without the need for user interaction, and requires no special internal knowledge.

Impact

Exploitation of this vulnerability can cause a denial-of-service condition, disrupting normal system operations and availability.

Remediation

Users are advised to update the firmware for Intel Ethernet Controller E810 to the latest version. Firmware updates are available for download from the Intel Support website.

Added: Feb 10, 2026, 5:36 PM
Updated: Feb 11, 2026, 12:29 AM

Vulnerability Rating

Custom Algorithm
spread
4.2
impact
0.8
exploitability
2.4
remediation
7.7
relevance
2.9
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.