cbcvebase.
CVE-2019-0146
published 2019-11-14

CVE-2019-0146: Resource leak in i40e driver for Intel(R) Ethernet 700 Series Controllers versions before 2.8.43 may allow an authenticated user to potentially enable a denial…

PriorityP416medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.29%
21.3th percentile
Resource leak in i40e driver for Intel(R) Ethernet 700 Series Controllers versions before 2.8.43 may allow an authenticated user to potentially enable a denial of service via local access.

Affected

13 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.2.6-1 (bookworm)linux 5.2.6-1 (bookworm)
intelethernet_700_series_software< 24.024.0
intelethernet_controller_710-bm1_firmware< 2.8.432.8.43
intelethernet_controller_x710-at2_firmware< 2.8.432.8.43
intelethernet_controller_x710-bm2_firmware< 2.8.432.8.43
intelethernet_controller_x710-tm4_firmware< 2.8.432.8.43
intelethernet_controller_xxv710-am1_firmware< 2.8.432.8.43
intelethernet_controller_xxv710-am2_firmware< 2.8.432.8.43
linuxlinux_kernel>= 0 < 5.2.6-15.2.6-1
linuxlinux_kernel>= 0 < 5.2.6-15.2.6-1
linuxlinux_kernel>= 0 < 5.2.6-15.2.6-1
linuxlinux_kernel>= 0 < 5.2.6-15.2.6-1
paloaltopan-os

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:N/I:N/A:P
osv5.5MEDIUM
vendor_debian5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.