First published: Thu Nov 14 2019(Updated: )
Insufficient access control in ilp60x64.sys driver for Intel(R) Ethernet 700 Series Controllers before version 1.33.0.0 may allow a privileged user to potentially enable escalation of privilege via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Ethernet Controller x710-tm4 | <1.33.0.0 | |
Intel Ethernet Controller x710-tm4 | ||
Intel Ethernet Controller x710-at2 | <1.33.0.0 | |
Intel Ethernet Controller x710-at2 | ||
Intel Ethernet Controller XXV710-AM2 | <1.33.0.0 | |
Intel Ethernet Controller xxv710-am2 firmware | ||
Intel Ethernet Controller XXV710-AM1 | <1.33.0.0 | |
Intel Ethernet Controller XXV710-AM1 Firmware | ||
Intel Ethernet Controller x710-bm2 | <1.33.0.0 | |
Intel Ethernet Controller x710-bm2 firmware | ||
Intel Ethernet Controller XL710-BM1 Firmware | <1.33.0.0 | |
Intel Ethernet Controller 710-bm1 Firmware | ||
Intel Ethernet 700 Series software | <24.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-0142 is a vulnerability in the ilp60x64.sys driver for Intel(R) Ethernet 700 Series Controllers before version 1.33.0.0 that allows a privileged user to potentially enable escalation of privilege via local access.
The severity of CVE-2019-0142 is high with a severity value of 8.2.
The Intel Ethernet Controller X710-tm4 Firmware, Intel Ethernet Controller X710-at2 Firmware, and Intel Ethernet Controller Xxv710-am2 Firmware versions up to exclusive 1.33.0.0 are affected.
A privileged user can potentially enable escalation of privilege through CVE-2019-0142 via local access.
You can find more information about CVE-2019-0142 on the Intel Security Center Advisory page: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00255.html