CVE-2024-21807: Critical severity intel ethernet network controllers and adapters vulnerability
Improper initialization in the Linux kernel mode driver for some Intel(R) Ethernet Network Controllers and Adapters before version 28.3 may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-21807?
CVE-2024-21807 is classified as a high-severity vulnerability due to its potential for privilege escalation.
How do I fix CVE-2024-21807?
To mitigate CVE-2024-21807, update the Intel Ethernet Network Controllers and Adapters to version 28.3 or later.
Who is affected by CVE-2024-21807?
CVE-2024-21807 affects Intel Ethernet Network Controllers and Adapters and the Linux kernel version prior to 28.3.
Can CVE-2024-21807 be exploited remotely?
CVE-2024-21807 requires local access to exploit, meaning an authenticated user can potentially escalate privileges.
What systems are vulnerable to CVE-2024-21807?
Systems using Intel Ethernet Network Controllers and Adapters or Linux kernel versions before 28.3 are vulnerable to CVE-2024-21807.