Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-28376


Out-of-bounds read in the firmware for some Intel(R) E810 Ethernet Controllers and Adapters before version 1.7.1 may allow an unauthenticated user to potentially enable denial of service via adjacent access.


Published

2023-11-14T19:15:21.793

Last Modified

2024-11-21T07:54:57.110

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.5 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-125
  • Type: Primary
    CWE-125

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System intel ethernet_network_adapter_e810-2cqda2_firmware < 1.7.1 Yes
Hardware intel ethernet_network_adapter_e810-2cqda2 - No
Operating System intel ethernet_network_adapter_e810-cqda1_firmware < 1.7.1 Yes
Hardware intel ethernet_network_adapter_e810-cqda1 - No
Operating System intel ethernet_network_adapter_e810-cqda1_for_ocp_firmware < 1.7.1 Yes
Hardware intel ethernet_network_adapter_e810-cqda1_for_ocp - No
Operating System intel ethernet_network_adapter_e810-cqda1_for_ocp_3.0_firmware < 1.7.1 Yes
Hardware intel ethernet_network_adapter_e810-cqda1_for_ocp_3.0 - No
Operating System intel ethernet_network_adapter_e810-cqda2_firmware < 1.7.1 Yes
Hardware intel ethernet_network_adapter_e810-cqda2 - No
Operating System intel ethernet_network_adapter_e810-cqda2_for_ocp_3.0_firmware < 1.7.1 Yes
Hardware intel ethernet_network_adapter_e810-cqda2_for_ocp_3.0 - No
Operating System intel ethernet_network_adapter_e810-cqda2t_firmware < 1.7.1 Yes
Hardware intel ethernet_network_adapter_e810-cqda2t - No

References