cbcvebase.
CVE-2020-24503
published 2021-02-17

CVE-2020-24503: Insufficient access control in some Intel(R) Ethernet E810 Adapter drivers for Linux before version 1.0.4 may allow an authenticated user to potentially enable…

medium5.5CVSS 3.1
AVLACLPRLUINSUCHINAN
Insufficient access control in some Intel(R) Ethernet E810 Adapter drivers for Linux before version 1.0.4 may allow an authenticated user to potentially enable information disclosure via local access.

Affected

1 ranges
VendorProductVersion rangeFixed in
intelethernet_network_adapter_e810_firmware< 1.0.41.0.4

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
osv5.5MEDIUM