CVE-2024-23497

Out-of-bounds write in Linux kernel mode driver for some Intel(R) Ethernet Network Controllers and Adapters before version 28.3 may allow an authenticated user to potentially enable escalation of privilege via local access.
Configurations

Configuration 1 (hide)

cpe:2.3:a:intel:ethernet_800_series_controllers_driver:*:*:*:*:*:linux:*:*

History

12 Sep 2024, 18:26

Type Values Removed Values Added
References () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00918.html - () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00918.html - Vendor Advisory
Summary
  • (es) La escritura fuera de los límites en el controlador del modo kernel de Linux para algunos Intel(R) Ethernet Network Controllers and Adapters anteriores a la versión 28.3 puede permitir que un usuario autenticado habilite potencialmente la escalada de privilegios a través del acceso local.
First Time Intel
Intel ethernet 800 Series Controllers Driver
CPE cpe:2.3:a:intel:ethernet_800_series_controllers_driver:*:*:*:*:*:linux:*:*

14 Aug 2024, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-08-14 14:15

Updated : 2024-09-12 18:26


NVD link : CVE-2024-23497

Mitre link : CVE-2024-23497

CVE.ORG link : CVE-2024-23497


JSON object : View

Products Affected

intel

  • ethernet_800_series_controllers_driver
CWE
CWE-787

Out-of-bounds Write