CVE-2023-22276

Race condition in firmware for some Intel(R) Ethernet Controllers and Adapters E810 Series before version 1.7.2.4 may allow an authenticated user to potentially enable denial of service via local access.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:intel:ethernet_network_controller_e810-xxvam2_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:ethernet_network_controller_e810-xxvam2:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:intel:ethernet_network_controller_e810-cam1_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:ethernet_network_controller_e810-cam1:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:intel:ethernet_network_controller_e810-cam2_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:ethernet_network_controller_e810-cam2:-:*:*:*:*:*:*:*

History

15 Sep 2023, 14:15

Type Values Removed Values Added
References
  • (MISC) https://security.netapp.com/advisory/ntap-20230915-0007/ -

21 Aug 2023, 14:31

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.7
CPE cpe:2.3:o:intel:ethernet_network_controller_e810-cam1_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:intel:ethernet_network_controller_e810-xxvam2_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:intel:ethernet_network_controller_e810-cam2_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:intel:ethernet_network_controller_e810-xxvam2:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:ethernet_network_controller_e810-cam2:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:ethernet_network_controller_e810-cam1:-:*:*:*:*:*:*:*
CWE CWE-362
References (MISC) http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00835.html - (MISC) http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00835.html - Vendor Advisory
First Time Intel ethernet Network Controller E810-cam1 Firmware
Intel ethernet Network Controller E810-cam1
Intel
Intel ethernet Network Controller E810-cam2 Firmware
Intel ethernet Network Controller E810-xxvam2
Intel ethernet Network Controller E810-cam2
Intel ethernet Network Controller E810-xxvam2 Firmware

11 Aug 2023, 03:44

Type Values Removed Values Added
New CVE

Information

Published : 2023-08-11 03:15

Updated : 2023-12-10 15:14


NVD link : CVE-2023-22276

Mitre link : CVE-2023-22276

CVE.ORG link : CVE-2023-22276


JSON object : View

Products Affected

intel

  • ethernet_network_controller_e810-cam2
  • ethernet_network_controller_e810-xxvam2
  • ethernet_network_controller_e810-xxvam2_firmware
  • ethernet_network_controller_e810-cam1
  • ethernet_network_controller_e810-cam1_firmware
  • ethernet_network_controller_e810-cam2_firmware
CWE
CWE-362

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

CWE-421

Race Condition During Access to Alternate Channel