CVE-2021-0009
Severity
6.5MEDIUM
EPSS
0.2%
top 53.14%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 11
Latest updateMay 24
Description
Out-of-bounds read in the firmware for Intel(R) Ethernet Adapters 800 Series Controllers and associated adapters before version 1.5.3.0 may allow an unauthenticated user to potentially enable denial of service via adjacent access.
CVSS vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 2.8 | Impact: 3.6
Affected Packages2 packages
▶CVEListV5intel(r)_ethernet_adapters_800_series_controllers_and_associated_adaptersbefore version 1.5.3.0
🔴Vulnerability Details
2GHSA▶
GHSA-qf6f-9fq8-x522: Out-of-bounds read in the firmware for Intel(R) Ethernet Adapters 800 Series Controllers and associated adapters before version 1↗2022-05-24
CVEList▶
CVE-2021-0009: Out-of-bounds read in the firmware for Intel(R) Ethernet Adapters 800 Series Controllers and associated adapters before version 1↗2021-08-11
📋Vendor Advisories
1VMware▶
VMware Workstation and Horizon Client for Windows updates address multiple security vulnerabilities (CVE-2021-21987, CVE-2021-21988, CVE-2021-21989)↗2021-05-20