First published: Wed Feb 17 2021(Updated: )
Insufficient access control in the firmware for the Intel(R) 700-series of Ethernet Controllers before version 7.3 may allow a privileged user to potentially enable denial of service via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Ethernet 700 Series software | <7.3 | |
Intel Ethernet Network Adapter X710-AT2 | ||
Intel Ethernet Network Adapter X710-AM2 | ||
Intel Ethernet Network Adapter X710-AT2 | ||
Intel Ethernet Network Adapter X710-BM2 | ||
Intel Ethernet Network Adapter X710-DA2 for OCP | ||
Intel Ethernet Network Adapter X710-DA2 | ||
Intel Ethernet Network Adapter X710-DA2 for OCP | ||
Intel Ethernet Network Adapter X710-DA4 | ||
Intel Ethernet Network Adapter X710-DA4 | ||
Intel Ethernet network adapter x710-t2l | ||
Intel Ethernet Network Adapter X710-T2L for OCP 3.0 | ||
Intel Ethernet Network Adapter X710-T4 | ||
Intel Ethernet Network Adapter X710-T4L | ||
Intel Ethernet Network Adapter X710-T4L | ||
Intel Ethernet Network Adapter X710-TM4 | ||
Intel Ethernet Network Adapter X722-DA2 | ||
Intel Ethernet Network Adapter X722-DA4 | ||
Intel Ethernet network adapter XL710-AM1 | ||
Intel Ethernet Network Adapter XL710-AM2 | ||
Intel Ethernet Network Adapter XL710-BM1 | ||
Intel Ethernet network adapter xl710-bm2 | ||
Intel Ethernet Network Adapter XL710-QDA1 for Open Compute Project | ||
Intel Ethernet Network Adapter XL710-QDA1 for Open Compute Project | ||
Intel Ethernet Network Adapter XL710-QDA2 for Open Compute Project | ||
Intel Ethernet network adapter XL710-QDA2 | ||
Intel Ethernet network adapter xxv710-am1 | ||
Intel Ethernet network adapter xxv710-am2 | ||
Intel Ethernet Network Adapter XXV710-DA1 for OCP | ||
Intel Ethernet Network Adapter XXV710-DA1 | ||
Intel Ethernet Network Adapter XXV710-DA2 | ||
Intel Ethernet Network Adapter XXV710-DA2T | ||
Intel Ethernet Network Adapter XXV710-DAx for OCP |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-24495 is rated as medium severity due to the potential for denial of service by a privileged user.
To mitigate CVE-2020-24495, update the firmware of the affected Intel Ethernet controllers to version 7.3 or later.
CVE-2020-24495 affects the Intel 700-series of Ethernet Controllers prior to version 7.3.
CVE-2020-24495 may allow a privileged user to cause a denial of service, disrupting network operations.
There are no confirmed workarounds for CVE-2020-24495; updating firmware is the recommended action.