CVE-2019-0146

MEDIUM

Intel Ethernet Controller X710-tm4 Firmware < 2.8.43 - Resource Leak

Title source: rule

Description

Resource leak in i40e driver for Intel(R) Ethernet 700 Series Controllers versions before 2.8.43 may allow an authenticated user to potentially enable a denial of service via local access.

Scores

CVSS v3 5.5
EPSS 0.0015
EPSS Percentile 34.8%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Classification

CWE
CWE-772
Status published

Affected Products (7)

intel/ethernet_controller_x710-tm4_firmware < 2.8.43
intel/ethernet_controller_x710-at2_firmware < 2.8.43
intel/ethernet_controller_xxv710-am2_firmware < 2.8.43
intel/ethernet_controller_xxv710-am1_firmware < 2.8.43
intel/ethernet_controller_x710-bm2_firmware < 2.8.43
intel/ethernet_controller_710-bm1_firmware < 2.8.43
intel/ethernet_700_series_software < 24.0

Timeline

Published Nov 14, 2019
Tracked Since Feb 18, 2026