CVE-2023-25775: Critical severity Intel Ethernet Controller RDMA driver for linux vulnerability
Improper access control in the Intel(R) Ethernet Controller RDMA driver for linux before version 1.9.30 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
Other sources
Intel Ethernet Controller Remote Direct Memory Access (RDMA) driver for Linux could allow a remote attacker to gain elevated privileges on the system, caused by improper access control. An attacker could exploit this vulnerability to gain elevated privileges.
— IBM
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2023-25775?
CVE-2023-25775 is a vulnerability that involves improper access control in the Intel(R) Ethernet Controller RDMA driver for Linux before version 1.9.30.
What is the severity of CVE-2023-25775?
CVE-2023-25775 has a severity rating of 9.8 (critical).
How does CVE-2023-25775 impact the affected software?
CVE-2023-25775 allows an unauthenticated user to potentially enable escalation of privilege via network access.
How can I fix CVE-2023-25775?
To fix CVE-2023-25775, update the Intel(R) Ethernet Controller RDMA driver to version 1.9.30 or later.
Where can I find more information about CVE-2023-25775?
You can find more information about CVE-2023-25775 on the Intel Security Center advisory page and the NetApp security advisory page.