Use After Free Vulnerability in Intel Ethernet 800 Series Driver
CVE-2025-27723

6.8MEDIUM

Key Information:

Vendor

Intel

Vendor
CVE Published:
12 May 2026

What is CVE-2025-27723?

A use after free vulnerability exists in the Intel Ethernet 800 series driver for Linux kernels prior to version 2.3.14, which can lead to a denial of service attack. This security flaw may be exploited by an unprivileged adversary who has authenticated access, enabling them to disrupt the availability of the system without requiring any special knowledge or user interaction. The impact on the system's availability can be significant, potentially rendering critical services inoperative.

Affected Version(s)

Intel(R) Ethernet 800 series before version 2.3.14

References

CVSS V4

Score:
6.8
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.