CVE-2020-24496

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
17/02/2021
Last modified:
22/02/2021

Description

Insufficient input validation in the firmware for Intel(R) 722 Ethernet Controllers before version 1.4.3 may allow a privileged user to potentially enable denial of service via local access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:intel:ethernet_network_adapter_x722-da2_firmware:*:*:*:*:*:*:*:* 1.4.3 (excluding)
cpe:2.3:h:intel:ethernet_network_adapter_x722-da2:-:*:*:*:*:*:*:*
cpe:2.3:o:intel:ethernet_network_adapter_x722-da4_firmware:*:*:*:*:*:*:*:* 1.4.3 (excluding)
cpe:2.3:h:intel:ethernet_network_adapter_x722-da4:-:*:*:*:*:*:*:*