Improper Input Validation in Intel 800 Series Ethernet Driver
CVE-2025-24325
9.3CRITICAL
What is CVE-2025-24325?
A vulnerability has been identified in the Intel 800 Series Ethernet driver prior to version 1.17.2, stemming from improper input validation within the Linux kernel-mode driver. This flaw can allow an authenticated user with local access to potentially escalate privileges, posing a significant security risk. Users are advised to update to the latest version to mitigate this vulnerability and protect their systems.
Affected Version(s)
Intel(R) 800 Series Ethernet before version 1.17.2
References
CVSS V4
Score:
9.3
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved