Intel Ethernet Network Adapter E810
cpe:2.3:h:intel:ethernet_network_adapter_e810-cqda1:*:*:*:*:*:*:*, +10 more
- < cvl fw 1.7.8.x
- < cvl fw 1.7.6
- < cpk 1.3.7
A denial-of-service vulnerability has been identified in the firmware for some 100GbE Intel Ethernet Network Adapter E810 models, prior to version cvl fw 1.7.6 and cpk 1.3.7. The issue arises from an out-of-bounds read within Ring 0: Bare Metal OS, which may be exploited by a network adversary with authenticated user access. This low-complexity attack could lead to a denial-of-service condition, potentially occurring via network access when specific internal knowledge is available, and requires no user interaction.
Exploitation of this vulnerability can lead to a denial-of-service condition, causing the affected system to become unresponsive or unavailable.
Users are advised to update the firmware for the Intel Ethernet Network Adapter E810 to version cvl fw 1.7.6 or later. The latest firmware updates can be downloaded from the Intel Ethernet Adapters 800 Series Controllers support page.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.