Escalation of Privilege Vulnerability in Intel 800 Series Ethernet Driver
CVE-2025-24303
8.8HIGH
What is CVE-2025-24303?
The Linux kernel-mode driver for Intel 800 Series Ethernet, prior to version 1.17.2, contains an improper check for unusual or exceptional conditions. This vulnerability allows an authenticated user with local access to potentially escalate their privileges within the system. Such vulnerabilities can pose significant security risks, leading to unauthorized access and control over system functionalities. Users and administrators are encouraged to update to the latest driver version to mitigate these risks. For more details, refer to the Intel Advisory.
Affected Version(s)
Intel(R) 800 Series Ethernet before version 1.17.2
References
CVSS V4
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved