CVE-2025-22836

7.8

Intel · 800 Series Ethernet

An integer overflow vulnerability in the Intel 800 Series Ethernet Linux kernel-mode driver may allow a local authenticated user to escalate privileges.

Executive summary

A high-severity integer overflow vulnerability in the Intel 800 Series Ethernet driver allows authenticated local users to potentially achieve privilege escalation.

Vulnerability

The vulnerability is an integer overflow or wraparound flaw (CWE-190) within the Linux kernel-mode driver. It requires an authenticated local user to trigger the condition, which may result in full privilege escalation.

Business impact

Successful exploitation of this vulnerability permits a local user to bypass security controls and gain elevated privileges on the host system. Given the CVSS score of 7.8, this represents a significant risk to system integrity and confidentiality, potentially allowing an attacker to compromise the entire operating environment.

Remediation

Immediate Action: Update the Intel 800 Series Ethernet Linux driver to version 1.17.2 or later to address the integer overflow flaw.

Proactive Monitoring: Monitor system logs for unusual kernel activity or unauthorized attempts to access sensitive system management interfaces.

Compensating Controls: Restrict local access to the affected hardware to authorized personnel only, as this vulnerability requires local authentication to exploit.

Exploitation status

Public Exploit Available: Unknown

Analyst recommendation

Intel 800 Series Ethernet users should prioritize testing and deploying the 1.17.2 driver update to mitigate the risk of privilege escalation. While the attack vector is limited to local authenticated users, the potential for total system compromise necessitates prompt remediation in environments where untrusted users have local access.

More Intel CVEs

Sources