First published: Thu Feb 16 2023(Updated: )
Uncontrolled search path in some Intel(R) Network Adapter installer software may allow an authenticated user to potentially enable escalation of privilege via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Administrative Tools for Intel Network Adapters | <27.3 | |
Intel Non-volatile Memory Update Utility | <4.01 | |
Intel Ethernet Network Controller E810 | ||
Intel Ethernet Network Adapter E810-CQDA1 for OCP | ||
Intel Ethernet Network Adapter E810-CQDA1 | ||
Intel Ethernet Network Adapter E810-CQDA1 for OCP | ||
Intel Ethernet Network Adapter E810-CQDA2 for OCP 3.0 | ||
Intel Ethernet Network Controllers and Adapters E810 Series | ||
Intel Ethernet Network Adapter E810-XXVDA2 for OCP | ||
Intel Ethernet Network Adapter E810-XXVDA2 | ||
Intel Ethernet Network Adapter E810-XXVDA2 | ||
Intel Ethernet Network Controllers and Adapters E810 Series | ||
Intel Ethernet Network Controllers and Adapters E810 Series | ||
Intel Ethernet Network Controllers and Adapters E810 Series | ||
Intel Ethernet Network Controllers and Adapters E810 Series | ||
Intel Ethernet Network Controllers and Adapters E810 Series |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-41314 is a vulnerability that allows an authenticated user to potentially enable escalation of privilege via local access in some Intel(R) Network Adapter installer software.
The Intel Administrative Tools For Intel Network Adapters and Intel Non-volatile Memory Update Utility software versions up to 27.3 and 4.01, respectively, are affected by CVE-2022-41314.
CVE-2022-41314 has a severity rating of 7.8 out of 10 (high severity).
An authenticated user can potentially enable escalation of privilege via local access using CVE-2022-41314.
More information about CVE-2022-41314 can be found on the Intel Security Center Advisory page at http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00770.html.