CVE-2025-27723: Use After Free
Use after free for some Linux kernel driver for the Intel(R) Ethernet 800 series before version 2.3.14 within Ring 0: Kernel may allow a denial of service. Unprivileged software adversary with an authenticated user combined with a low complexity attack may enable denial of service. This result may potentially occur via local access when attack requirements are present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (none), integrity (none) and availability (high) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (high) impacts.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-27723?
The severity of CVE-2025-27723 is classified as high due to the potential for denial of service.
How do I fix CVE-2025-27723?
To fix CVE-2025-27723, update the Intel Ethernet 800 series Linux driver to version 2.3.14 or later.
What type of attacks can exploit CVE-2025-27723?
CVE-2025-27723 can be exploited by unprivileged software adversaries utilizing a low complexity attack.
Which versions of the Intel Ethernet 800 series Linux driver are affected by CVE-2025-27723?
Versions of the Intel Ethernet 800 series Linux driver prior to 2.3.14 are affected by CVE-2025-27723.
What impact does CVE-2025-27723 have on system security?
CVE-2025-27723 could allow an attacker to cause a denial of service, impacting system availability.