5.9

CVE-2016-8106

A Denial of Service in Intel Ethernet Controller's X710/XL710 with Non-Volatile Memory Images before version 5.05 allows a remote attacker to stop the controller from processing network traffic working under certain network use conditions.

Data is provided by the National Vulnerability Database (NVD)
IntelEthernet Controller Xl710 Firmware Version <= 5.04
   IntelEth Converged Ntwk Adptr X710-da2 Ex710da2g1p5 Version-
   IntelEth Converged Ntwk Adptr X710-da4 Ex710da4fhg1p5 Version-
   IntelEth Converged Ntwk Adptr X710-da4 Ex710da4g1p5 Version-
   IntelEth Converged Ntwk Adptr Xl710-qda1 Exl710qda1g1p5 Version-
   IntelEth Converged Ntwk Adptr Xl710-qda2 Exl710qda2g1p5 Version-
   IntelEthernet Converged Network Adapter X710-da2 X710da2 Version-
   IntelEthernet Converged Network Adapter X710-da2 X710da2blk Version-
   IntelEthernet Converged Network Adapter X710-da2 X710da2g2p5 Version-
   IntelEthernet Converged Network Adapter X710-da4 X710da4fh Version-
   IntelEthernet Converged Network Adapter X710-da4 X710da4fhblk Version-
   IntelEthernet Converged Network Adapter X710-da4 X710da4fhg2p5 Version-
   IntelEthernet Converged Network Adapter X710-da4 X710da4g2p5 Version-
   IntelEthernet Converged Network Adapter Xl710-qda1 Xl710qda1 Version-
   IntelEthernet Converged Network Adapter Xl710-qda1 Xl710qda1blk Version-
   IntelEthernet Converged Network Adapter Xl710-qda1 Xl710qda1g2p5 Version-
   IntelEthernet Converged Network Adapter Xl710-qda2 Xl710qda2 Version-
   IntelEthernet Converged Network Adapter Xl710-qda2 Xl710qda2blk Version-
   IntelEthernet Converged Network Adapter Xl710-qda2 Xl710qda2g2p5 Version-
LenovoConverged Hx Series Version5.05
LenovoNextscale Nx360 M5 Version5.05
LenovoSystem X3250 M5 Version5.05
LenovoSystem X3500 M5 Version5.05
LenovoSystem X3550 M5 Version5.05
LenovoSystem X3650 M5 Version5.05
LenovoSystem X3750 M4 Version5.05
LenovoSystem X3850 X6 Version5.05
LenovoSystem X3950 X6 Version5.05
LenovoThinkagile Cx2200 Version5.05
LenovoThinkagile Cx4200 Version5.05
LenovoThinkagile Cx4600 Version5.05
LenovoThinkserver Rd350 Version5.05
LenovoThinkserver Rd450 Version5.05
LenovoThinkserver Rd550 Version5.05
LenovoThinkserver Rd650 Version5.05
LenovoThinkserver Sd350 Version5.05
LenovoThinkserver Td350 Version5.05
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 2.58% 0.85
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5.9 2.2 3.6
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:N/A:P
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.