First published: Wed Feb 17 2021(Updated: )
Insufficient access control in the firmware for the Intel(R) 700-series of Ethernet Controllers before version 8.0 may allow a privileged user to potentially enable denial of service via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Ethernet 700 Series software | <8.0 | |
Intel Ethernet Network Adapter X710-AT2 | ||
Intel Ethernet Network Adapter X710-AM2 | ||
Intel Ethernet Network Adapter X710-AT2 | ||
Intel Ethernet Network Adapter X710-BM2 | ||
Intel Ethernet Network Adapter X710-DA2 for OCP | ||
Intel Ethernet Network Adapter X710-DA2 | ||
Intel Ethernet Network Adapter X710-DA2 for OCP | ||
Intel Ethernet Network Adapter X710-DA4 | ||
Intel Ethernet Network Adapter X710-DA4 | ||
Intel Ethernet network adapter x710-t2l | ||
Intel Ethernet Network Adapter X710-T2L for OCP 3.0 | ||
Intel Ethernet Network Adapter X710-T4 | ||
Intel Ethernet Network Adapter X710-T4L | ||
Intel Ethernet Network Adapter X710-T4L | ||
Intel Ethernet Network Adapter X710-TM4 | ||
Intel Ethernet Network Adapter X722-DA2 | ||
Intel Ethernet Network Adapter X722-DA4 | ||
Intel Ethernet network adapter XL710-AM1 | ||
Intel Ethernet Network Adapter XL710-AM2 | ||
Intel Ethernet Network Adapter XL710-BM1 | ||
Intel Ethernet network adapter xl710-bm2 | ||
Intel Ethernet Network Adapter XL710-QDA1 for Open Compute Project | ||
Intel Ethernet Network Adapter XL710-QDA1 for Open Compute Project | ||
Intel Ethernet Network Adapter XL710-QDA2 for Open Compute Project | ||
Intel Ethernet network adapter XL710-QDA2 | ||
Intel Ethernet network adapter xxv710-am1 | ||
Intel Ethernet network adapter xxv710-am2 | ||
Intel Ethernet Network Adapter XXV710-DA1 for OCP | ||
Intel Ethernet Network Adapter XXV710-DA1 | ||
Intel Ethernet Network Adapter XXV710-DA2 | ||
Intel Ethernet Network Adapter XXV710-DA2T | ||
Intel Ethernet Network Adapter XXV710-DAx for OCP |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-24493 is categorized with moderate severity due to insufficient access control in the firmware of Intel Ethernet Controllers.
To mitigate CVE-2020-24493, update the firmware for Intel 700-series Ethernet Controllers to version 8.0 or newer.
CVE-2020-24493 affects devices running vulnerable versions of Intel Ethernet 700-series firmware prior to version 8.0.
CVE-2020-24493 could allow a privileged user to potentially enable denial of service via local access.
As of now, there are no indications that CVE-2020-24493 is being actively exploited in the wild.