First published: Thu Nov 14 2019(Updated: )
Insufficient input validation in i40e driver for Intel(R) Ethernet 700 Series Controllers versions before 7.0 may allow an authenticated user to potentially enable a denial of service via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Ethernet Controller x710-tm4 | <7.0 | |
Intel Ethernet Controller x710-tm4 | ||
Intel Ethernet Controller x710-at2 | <7.0 | |
Intel Ethernet Controller x710-at2 | ||
Intel Ethernet Controller XXV710-AM2 | <7.0 | |
Intel Ethernet Controller xxv710-am2 firmware | ||
Intel Ethernet Controller XXV710-AM1 | <7.0 | |
Intel Ethernet Controller XXV710-AM1 Firmware | ||
Intel Ethernet Controller x710-bm2 | <7.0 | |
Intel Ethernet Controller x710-bm2 firmware | ||
Intel Ethernet Controller XL710-BM1 Firmware | <7.0 | |
Intel Ethernet Controller 710-bm1 Firmware | ||
Intel Ethernet 700 Series software | <24.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-0147 refers to an insufficient input validation vulnerability in the i40e driver for Intel(R) Ethernet 700 Series Controllers.
CVE-2019-0147 may allow an authenticated user to potentially enable a denial of service via local access.
CVE-2019-0147 has a severity rating of medium with a CVSS score of 5.5.
Versions before 7.0 of Intel Ethernet 700 Series Controllers are affected by CVE-2019-0147.
To fix CVE-2019-0147, users should apply the necessary updates or patches provided by Intel.