6
CVE-2022-36382
- EPSS 0.04%
- Veröffentlicht 16.02.2023 21:15:13
- Zuletzt bearbeitet 21.11.2024 07:12:54
- Quelle secure@intel.com
- Teams Watchlist Login
- Unerledigt Login
Out-of-bounds write in firmware for some Intel(R) Ethernet Network Controllers and Adapters E810 Series before version 1.7.0.8 and some Intel(R) Ethernet 700 Series Controllers and Adapters before version 9.101 may allow a privileged user to potentially enable denial of service via local access.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Intel ≫ Ethernet Network Controller E810-cam1 Firmware Version < 1.7.0.8
Intel ≫ Ethernet Network Controller E810-cam2 Firmware Version < 1.7.0.8
Intel ≫ Ethernet Network Controller E810-xxvam2 Firmware Version < 1.7.0.8
Intel ≫ Ethernet Controller X710-am2 Firmware Version < 9.101
Intel ≫ Ethernet Controller X710-bm2 Firmware Version < 9.101
Intel ≫ Ethernet Controller Xl710-am1 Firmware Version < 9.101
Intel ≫ Ethernet Controller Xl710-am2 Firmware Version < 9.101
Intel ≫ Ethernet Controller Xl710-bm1 Firmware Version < 9.101
Intel ≫ Ethernet Controller Xl710-bm2 Firmware Version < 9.101
Intel ≫ Ethernet Controller Xxv710-am1 Firmware Version < 9.101
Intel ≫ Ethernet Controller Xxv710-am2 Firmware Version < 9.101
Intel ≫ Ethernet Converged Network Adapter X710-da2 Firmware Version < 9.101
Intel ≫ Ethernet Converged Network Adapter X710-da4 Firmware Version < 9.101
Intel ≫ Ethernet Converged Network Adapter Xl710-da1 Firmware Version < 9.101
Intel ≫ Ethernet Converged Network Adapter Xl710-da2 Firmware Version < 9.101
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.04% | 0.098 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 4.4 | 0.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
|
secure@intel.com | 6 | 0.8 | 5.2 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H
|
CWE-787 Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.