First published: Wed Feb 17 2021(Updated: )
Insufficient input validation in the firmware for Intel(R) 722 Ethernet Controllers before version 1.4.3 may allow a privileged user to potentially enable denial of service via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Ethernet network Adapter x722da2 firmware | <1.4.3 | |
Intel Ethernet Network Adapter X722-DA2 | ||
Intel Ethernet Network Adapter X722-DA4 | <1.4.3 | |
Intel Ethernet Network Adapter X722-DA4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-24496 has a medium severity rating due to insufficient input validation that can lead to denial of service.
To fix CVE-2020-24496, update the firmware of the Intel Ethernet Controllers to version 1.4.3 or later.
CVE-2020-24496 affects the Intel Ethernet Network Adapter X722-DA2 and X722-DA4 firmware versions prior to 1.4.3.
CVE-2020-24496 requires local access for exploitation, as it can potentially be triggered by a privileged user.
CVE-2020-24496 may cause denial of service, impacting network availability if exploited.