First published: Thu Aug 18 2022(Updated: )
Insufficient control flow management in the Intel(R) Ethernet 500 Series Controller drivers for VMWare before version 1.11.4.0 and in the Intel(R) Ethernet 700 Series Controller drivers for VMWare before version 2.1.5.0 may allow an authenticated user to potentially enable a denial of service via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
VMware ixgben | <1.11.4.0 | |
Intel 82599 10 Gigabit Ethernet Controller | ||
Intel Ethernet Controller X540 | ||
Intel Ethernet Connection X550 | ||
Intel Ethernet Controller x552 | ||
VMWare i40en | <2.1.5.0 | |
Intel Ethernet Controller RDMA driver for linux | ||
Intel Ethernet Controller x722 | ||
Intel Ethernet Controller XL710 | ||
Intel Ethernet Controller XXV710 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-21793 has been classified as a medium severity vulnerability.
To fix CVE-2022-21793, update the Intel Ethernet 500 Series Controller drivers for VMware to version 1.11.4.0 or later, and the Intel Ethernet 700 Series Controller drivers for VMware to version 2.1.5.0 or later.
CVE-2022-21793 affects users of VMware systems utilizing Intel Ethernet 500 and 700 Series Controller drivers prior to the specified versions.
CVE-2022-21793 is an insufficient control flow management vulnerability.
Yes, CVE-2022-21793 may allow an authenticated user to potentially enable a denial of service.