MEDIUM · 5.9

CVE-2016-8106

A Denial of Service in Intel Ethernet Controller's X710/XL710 with Non-Volatile Memory Images before version 5.05 allows a remote attacker to stop the controller from processing network traffic workin...

Vulnerability Description

A Denial of Service in Intel Ethernet Controller's X710/XL710 with Non-Volatile Memory Images before version 5.05 allows a remote attacker to stop the controller from processing network traffic working under certain network use conditions.

CVSS Score

5.9

MEDIUM

CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
NONE
Availability
HIGH

Affected Products

VendorProductVersions
IntelEthernet Controller X710 Firmware<= 5.04
IntelEthernet Controller X710-Am2 Sr1Zp-
IntelEthernet Controller X710-Am2 Sr1Zq-
IntelEthernet Controller X710-Bm2 Sllkb-
IntelEthernet Controller X710-Bm2 Sllkc-
IntelEthernet Controller Xl710-Am1 Sr1Zm-
IntelEthernet Controller Xl710-Am1 Sr1Zn-
IntelEthernet Controller Xl710-Am2 Sr1Zk-
IntelEthernet Controller Xl710-Am2 Sr1Zl-
IntelEthernet Controller Xl710-Bm1 Sllk9-
IntelEthernet Controller Xl710-Bm1 Sllka-
IntelEthernet Controller Xl710-Bm2 Sllk7-
IntelEthernet Controller Xl710-Bm2 Sllk8-
IntelEthernet Controller Xl710 Firmware<= 5.04
IntelEth Converged Ntwk Adptr X710-Da2 Ex710Da2G1P5-
IntelEth Converged Ntwk Adptr X710-Da4 Ex710Da4Fhg1P5-
IntelEth Converged Ntwk Adptr X710-Da4 Ex710Da4G1P5-
IntelEth Converged Ntwk Adptr Xl710-Qda1 Exl710Qda1G1P5-
IntelEth Converged Ntwk Adptr Xl710-Qda2 Exl710Qda2G1P5-
IntelEthernet Converged Network Adapter X710-Da2 X710Da2-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2016-8106?

CVE-2016-8106 is a vulnerability with a CVSS score of 5.9 (MEDIUM). A Denial of Service in Intel Ethernet Controller's X710/XL710 with Non-Volatile Memory Images before version 5.05 allows a remote attacker to stop the controller from processing network traffic workin...

How severe is CVE-2016-8106?

CVE-2016-8106 has been rated MEDIUM with a CVSS base score of 5.9/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2016-8106?

Check the references section above for vendor advisories and patch information. Affected products include: Intel Ethernet Controller X710 Firmware, Intel Ethernet Controller X710-Am2 Sr1Zp, Intel Ethernet Controller X710-Am2 Sr1Zq, Intel Ethernet Controller X710-Bm2 Sllkb, Intel Ethernet Controller X710-Bm2 Sllkc.