Lucene search

K
cve[email protected]CVE-2015-1142857
HistoryOct 03, 2022 - 4:16 p.m.

CVE-2015-1142857

2022-10-0316:16:16
CWE-254
web.nvd.nist.gov
40
cve-2015-1142857
sr-iov
vf
ethernet flow control
pause frames
linux kernel ixgbe driver
linux kernel i40e/i40evf driver
dpdk
nic firmware
nvd

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

8.6 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H

5.9 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

47.5%

On multiple SR-IOV cars it is possible for VF’s assigned to guests to send ethernet flow control pause frames via the PF. This includes Linux kernel ixgbe driver before commit f079fa005aae08ee0e1bc32699874ff4f02e11c1, the Linux Kernel i40e/i40evf driver before e7358f54a3954df16d4f87e3cad35063f1c17de5 and the DPDK before commit 3f12b9f23b6499ff66ec8b0de941fb469297e5d0, additionally Multiple vendor NIC firmware is affected.

Affected configurations

NVD
Node
intelx710Match-
AND
intelx710_firmwareMatch-
Node
intel82599Match-
AND
intel82599_firmwareMatch-
Node
intelx540Match-
AND
intelx540_firmwareMatch-
Node
inteli350Match-
AND
inteli350_firmwareMatch-
Node
intel82576Match-
AND
intel82576_firmwareMatch-
Node
linuxlinux_kernel_ixgbeMatch-
Node
linuxlinux_kernel_i40e\/i40evfMatch-
Node
dpdkdpdkMatch-

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

8.6 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H

5.9 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

47.5%

Related for CVE-2015-1142857