CVE-2022-21793: Medium severity vmware ixgben vulnerability

Published Aug 18, 2022
·
Updated

Insufficient control flow management in the Intel(R) Ethernet 500 Series Controller drivers for VMWare before version 1.11.4.0 and in the Intel(R) Ethernet 700 Series Controller drivers for VMWare before version 2.1.5.0 may allow an authenticated user to potentially enable a denial of service via local access.

Affected Software

20 affected components
VMware Ixgben<1.11.4.0
Intel 82599 10 Gigabit Ethernet Controller
Intel Ethernet Controller X540
Intel Ethernet Controller X550
Intel Ethernet Controller X552
VMware I40en<2.1.5.0
Intel Ethernet Controller X710
Intel Ethernet Controller X722
Intel Ethernet Controller Xl710
Intel Ethernet Controller Xxv710
All of the following
VMware Ixgben<1.11.4.0
Any of the following
Intel 82599 10 Gigabit Ethernet Controller
Intel Ethernet Controller X540
Intel Ethernet Controller X550
Intel Ethernet Controller X552
All of the following
VMware I40en<2.1.5.0
Any of the following
Intel Ethernet Controller X710
Intel Ethernet Controller X722
Intel Ethernet Controller Xl710
Intel Ethernet Controller Xxv710

Event History

Aug 18, 2022
CVE Published
via MITRE·07:44 PM
Data Sourced
via MITRE·07:44 PM
DescriptionWeakness
Data Sourced
via NVD·08:15 PM
RemedyDescriptionSeverityAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2022-21793?

CVE-2022-21793 has been classified as a medium severity vulnerability.

2

How do I fix CVE-2022-21793?

To fix CVE-2022-21793, update the Intel Ethernet 500 Series Controller drivers for VMware to version 1.11.4.0 or later, and the Intel Ethernet 700 Series Controller drivers for VMware to version 2.1.5.0 or later.

3

Who is affected by CVE-2022-21793?

CVE-2022-21793 affects users of VMware systems utilizing Intel Ethernet 500 and 700 Series Controller drivers prior to the specified versions.

4

What type of vulnerability is CVE-2022-21793?

CVE-2022-21793 is an insufficient control flow management vulnerability.

5

Can CVE-2022-21793 lead to a denial of service?

Yes, CVE-2022-21793 may allow an authenticated user to potentially enable a denial of service.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203