Buffer Overflow in Intel Ethernet 700 Series Driver
CVE-2019-0145
7.8HIGH
Key Information:
- Vendor
- Intel
- Vendor
- CVE Published:
- 14 November 2019
Summary
A buffer overflow vulnerability exists in the i40e driver used for Intel Ethernet 700 Series Controllers, specifically in versions prior to 7.0. This vulnerability allows an authenticated user to potentially escalate privileges through local access, which could lead to unauthorized actions or control over the affected system. Users are recommended to update to the latest version of the driver to mitigate this risk. For more information, refer to Intel's security advisory.
Affected Version(s)
2019.2 IPU – Intel(R) Ethernet 700 Series Controllers See provided reference
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved