VulnerabilityModified
CVE-2021-0009
Out-of-bounds read in the firmware for Intel(R) Ethernet Adapters 800 Series Controllers and associated adapters before version 1.5.3.0 may allow an unauthenticated user to potentially enable denial of service via adjacent access.
MEDIUM 6.5EPSS 0.39%
Does this matter?
Lower severity and a low EPSS score (0.39%). Track it; it rarely justifies an emergency change on its own.
Description
Out-of-bounds read in the firmware for Intel(R) Ethernet Adapters 800 Series Controllers and associated adapters before version 1.5.3.0 may allow an unauthenticated user to potentially enable denial of service via adjacent access.
- CVSS 3.1
- 6.5 MEDIUMCVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.39% probability · 32th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-125
- Affected
- intel/ethernet controller e810 firmware
- Source
- secure@intel.com
References
- https://security.netapp.com/advisory/ntap-20210827-0009/Third Party Advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00479.htmlVendor Advisory
- https://security.netapp.com/advisory/ntap-20210827-0009/Third Party Advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00479.htmlVendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.