Escalation of Privilege Vulnerability in Intel 800 Series Ethernet Driver
CVE-2025-24303

8.8HIGH

Key Information:

Vendor

Intel

Vendor
CVE Published:
12 August 2025

What is CVE-2025-24303?

The Linux kernel-mode driver for Intel 800 Series Ethernet, prior to version 1.17.2, contains an improper check for unusual or exceptional conditions. This vulnerability allows an authenticated user with local access to potentially escalate their privileges within the system. Such vulnerabilities can pose significant security risks, leading to unauthorized access and control over system functionalities. Users and administrators are encouraged to update to the latest driver version to mitigate these risks. For more details, refer to the Intel Advisory.

Affected Version(s)

Intel(R) 800 Series Ethernet before version 1.17.2

References

CVSS V4

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.