CVE-2020-24492: Medium severity intel ethernet network adapter x722da2 firmware vulnerability
Insufficient access control in the firmware for the Intel(R) 722 Ethernet Controllers before version 1.5 may allow a privileged user to potentially enable a denial of service via local access.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2020-24492?
CVE-2020-24492 is classified as a medium severity vulnerability due to insufficient access control that may allow a denial of service.
How do I fix CVE-2020-24492?
To mitigate CVE-2020-24492, update the firmware for Intel Ethernet Controllers to version 1.5 or later.
What type of devices are affected by CVE-2020-24492?
CVE-2020-24492 affects the Intel Ethernet Network Adapter X722-DA2 and X722-DA4 with firmware versions prior to 1.5.
Can a non-privileged user exploit CVE-2020-24492?
A non-privileged user cannot exploit CVE-2020-24492 as it requires privileged access to enable a denial of service.
Is there a known workaround for CVE-2020-24492?
There is no known workaround for CVE-2020-24492; the recommended action is to upgrade the firmware.