MEDIUM · 6.5

CVE-2024-23499

Protection mechanism failure in Linux kernel mode driver for some Intel(R) Ethernet Network Controllers and Adapters E810 Series before version 28.3 may allow an unauthenticated user to potentially en...

Vulnerability Description

Protection mechanism failure in Linux kernel mode driver for some Intel(R) Ethernet Network Controllers and Adapters E810 Series before version 28.3 may allow an unauthenticated user to potentially enable denial of service via network access.

CVSS Score

6.5

MEDIUM

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
LOW
Availability
LOW

Affected Products

VendorProductVersions
IntelEthernet 800 Series Controllers Driver< 28.3

Related Weaknesses (CWE)

References

FAQ

What is CVE-2024-23499?

CVE-2024-23499 is a vulnerability with a CVSS score of 6.5 (MEDIUM). Protection mechanism failure in Linux kernel mode driver for some Intel(R) Ethernet Network Controllers and Adapters E810 Series before version 28.3 may allow an unauthenticated user to potentially en...

How severe is CVE-2024-23499?

CVE-2024-23499 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2024-23499?

Check the references section above for vendor advisories and patch information. Affected products include: Intel Ethernet 800 Series Controllers Driver.