intel.com
https://intel.com/content/www/us/en/security-center/advisory/intel-sa-01236.html CVE-2024-39286
LOW
Record summary
CVE-2024-39286 has a selected CVSS score of 2.0 (low).
Description
Incorrect execution-assigned permissions in the Linux kernel mode driver for the Intel(R) 800 Series Ethernet Driver before version 1.15.4 may allow an authenticated user to potentially enable information disclosure via local access.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableNo
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Feb 13, 2025 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
Intel(R) 800 Series Ethernet DriverDefault status: unaffected | CVE List | before version 1.15.4 | affected |
References
2nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2024-39286