Improper Input Validation in Intel 800 Series Ethernet Driver
CVE-2025-24325

9.3CRITICAL

Key Information:

Vendor

Intel

Vendor
CVE Published:
12 August 2025

What is CVE-2025-24325?

A vulnerability has been identified in the Intel 800 Series Ethernet driver prior to version 1.17.2, stemming from improper input validation within the Linux kernel-mode driver. This flaw can allow an authenticated user with local access to potentially escalate privileges, posing a significant security risk. Users are advised to update to the latest version to mitigate this vulnerability and protect their systems.

Affected Version(s)

Intel(R) 800 Series Ethernet before version 1.17.2

References

CVSS V4

Score:
9.3
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.