CVE-2025-24484
7.8Intel · 800 Series Ethernet
Intel 800 Series Ethernet Linux drivers contain an improper input validation flaw that may allow local authenticated users to escalate privileges.
Executive summary
A vulnerability in Intel 800 Series Ethernet Linux drivers could allow an authenticated local attacker to escalate system privileges, presenting a high risk to system integrity.
Vulnerability
The vulnerability is caused by improper input validation (CWE-20) within the Linux kernel-mode driver. An authenticated user with local access can leverage this flaw to perform an escalation of privilege.
Business impact
Successful exploitation of this vulnerability grants an authenticated local user elevated system permissions, which could lead to full system compromise. Given the CVSS score of 7.8, this represents a high-severity risk, as it enables unauthorized administrative control over affected hardware infrastructure.
Remediation
Immediate Action: Update the Intel 800 Series Ethernet Linux driver to version 1.17.2 or later as specified in the official Intel security advisory.
Proactive Monitoring: Monitor system logs for unusual kernel-level activity or unauthorized attempts to access sensitive driver interfaces.
Compensating Controls: Restrict local system access to authorized personnel only, as the attack vector requires authenticated local access to the target host.
Exploitation status
Public Exploit Available: Unknown
Analyst recommendation
Organizations utilizing Intel 800 Series Ethernet hardware should prioritize updating their Linux driver environments to version 1.17.2 or higher. While local access is required for exploitation, the potential for privilege escalation makes this a significant maintenance item for all affected server and workstation fleets.