Database/Firmware, BMC & network fabric
Intel Ethernet Controller E810 firmware: An unauthenticated attacker on the network can take an E810 NIC out of service
Impact
An unauthenticated attacker on the network can take an E810 NIC out of service through a protection-mechanism failure in the adapter firmware. E810 is the standard 100/200GbE front-end NIC on a large share of AI servers, and it is often also the storage-network NIC — so knocking it down removes the node from both the job and its dataset. Because the fault is in firmware, the host OS sees a dead link, not a driver problem, and normal remediation (restart the driver) does not recover it.
Who can reach it
Unauthenticated, remote — traffic arriving at the NIC over the network. No host credentials and no adjacency requirement.
What to do
Flash E810 adapter firmware to 4.4 or later using Intel's NVM Update Tool (or the OEM-repackaged version — Dell DSA-2025-236, HPE and Lenovo ship their own). NVM updates require a **cold power cycle**, not a warm reboot, for the new image to take effect — so this is a full node drain per server, which across a GPU fleet is the dominant cost. Sequence it with your normal node-maintenance rotation rather than as an emergency.
References
Related entries
- Intel Ethernet Controller E810 firmware: Out-of-bounds write inside E810 firmware, reachable from a privileged Ring-0CVE-2025-27243 · Intel Ethernet Controller E810 firmwareMedium
- SEV-ES / SEV-SNP guest kernel - unsolicited #VC (vector 29) injection: An untrusted hypervisor can inject the #VCCVE-2024-25742 · SEV-ES / SEV-SNP guest kernel - unsolicited #VC (vector 29) injectionMedium
- Linux kernel (drivers/net/ethernet/mellanox/mlx5/core): Nothing orders the PTP send-queue tracking list againstCVE-2024-26858 · Linux kernel (drivers/net/ethernet/mellanox/mlx5/core)Medium
- Intel processors with SGX (EDECCSSA leaf): Improper access control on the EDECCSSA user leaf function letsCVE-2024-36293 · Intel processors with SGX (EDECCSSA leaf)Medium
- Linux kernel (drivers/net/ethernet/mellanox/mlx5/core/en_accel): The IPsec offload worker does not check the xfrmCVE-2024-49953 · Linux kernel (drivers/net/ethernet/mellanox/mlx5/core/en_accel)Medium
- Intel PCIe Switch firmware package and LED mode toggle tool before version MR4_1.0b1: Improper access controlCVE-2025-24323 · Intel PCIe Switch firmware package and LED mode toggle tool before version MR4_1.0b1Medium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.