Intel Ethernet Adapter Complete Driver Pack Denial-of-Service Vulnerability
Vulnerability
A denial-of-service vulnerability has been identified in some Intel Ethernet Adapter Complete Driver Pack software prior to version 1.5.1.0. This vulnerability arises from a time-of-check time-of-use race condition within user applications, allowing an unprivileged, authenticated adversary to disrupt service. Exploitation may require active user interaction and could occur through adjacent access, although such conditions are not always present.
Impact
Exploitation of this vulnerability can lead to a denial-of-service condition, causing significant disruption to system availability.
Remediation
Users are advised to update the ESXi RDMA driver (irdman) for Intel 800 Series Ethernet to version 1.5.1.0 or later. The update is available for download from the Broadcom Compatibility Guide.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
