VDB
CVE-2022-41314
CVE-2022-41314
PUBLISHED
In Intel Ethernet Controller existieren mehrere Schwachstellen. Die Fehler bestehen aufgrund eines fehlenden Schutzmechanismus, einer unzureichenden Kontrollflussverwaltung und eines unkontrollierten Suchpfads. Ein lokaler Angreifer kann diese Schwachstellen ausnutzen, um seine Privilegien zu erweitern. Das erfolgreiche Ausnutzen einer dieser Schwachstellen erfordert eine Benutzerinteraktion.
EPSS 0.07% · 20.7th percentile
Risk Scores
EPSS Score
0.07%
20.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Intel | Intel Ethernet Controller VMWare Drivers | |
| Intel | Intel Ethernet Controller Network Adapter | |
| Intel | Intel Ethernet Controller Administrative Tools Drivers | |
| Dell | Dell PowerEdge | |
| Lenovo | Lenovo Computer |
Timeline
- Feb 14, 2023 CVE Published
- Feb 17, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Mar 29, 2023 EPSS Score
- May 7, 2023 EPSS Score
- Jun 16, 2023 EPSS Score
- Jul 25, 2023 EPSS Score
- Sep 3, 2023 EPSS Score
- Oct 12, 2023 EPSS Score
- Nov 21, 2023 EPSS Score
- Dec 30, 2023 EPSS Score
- Feb 8, 2024 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2023/wid-sec-w-2023-0362.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2023-0362 advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00750.html advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00754.html advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00761.html advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00770.html advisory
- https://support.lenovo.com/us/en/product_security/ps500548-intel-ethernet-vmware-drivers-advisory advisory
- https://support.lenovo.com/us/en/product_security/ps500544 advisory
- https://www.dell.com/support/kbdoc/de-de/000209267/dsa-2023-016-dell-poweredge-server-security-update-for-intel-ethernet-controllers-and-adapters-vulnerabilities advisory