VDB
CVE-2022-27808
CVE-2022-27808
PUBLISHED
In Intel Ethernet Controller existieren mehrere Schwachstellen. Die Fehler bestehen aufgrund eines fehlenden Schutzmechanismus, einer unzureichenden Kontrollflussverwaltung und eines unkontrollierten Suchpfads. Ein lokaler Angreifer kann diese Schwachstellen ausnutzen, um seine Privilegien zu erweitern. Das erfolgreiche Ausnutzen einer dieser Schwachstellen erfordert eine Benutzerinteraktion.
EPSS 0.05% · 17.2th percentile
Risk Scores
EPSS Score
0.05%
17.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Intel | Intel Ethernet Controller Administrative Tools Drivers | |
| Intel | Intel Ethernet Controller VMWare Drivers | |
| Lenovo | Lenovo Computer | |
| Dell | Dell PowerEdge | |
| Intel | Intel Ethernet Controller Network Adapter |
Timeline
- Feb 14, 2023 CVE Published
- Feb 17, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Mar 29, 2023 EPSS Score
- May 7, 2023 EPSS Score
- Jun 16, 2023 EPSS Score
- Jul 25, 2023 EPSS Score
- Sep 3, 2023 EPSS Score
- Oct 13, 2023 EPSS Score
- Nov 21, 2023 EPSS Score
- Dec 31, 2023 EPSS Score
- Feb 8, 2024 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2023/wid-sec-w-2023-0362.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2023-0362 advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00750.html advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00754.html advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00761.html advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00770.html advisory
- https://support.lenovo.com/us/en/product_security/ps500548-intel-ethernet-vmware-drivers-advisory advisory
- https://support.lenovo.com/us/en/product_security/ps500544 advisory
- https://www.dell.com/support/kbdoc/de-de/000209267/dsa-2023-016-dell-poweredge-server-security-update-for-intel-ethernet-controllers-and-adapters-vulnerabilities advisory