GPU VulnDB

Database/Kernel, userspace & hypervisor

Intel ice driver (Ethernet 800 Series, Linux kernel mode): Improper input validation in the 800-series Linux kernel

CVSS 8.8CVE-2025-24325Kernel, userspace & hypervisorcurated

Impact

Improper input validation in the 800-series Linux kernel driver allowing an authenticated user to escalate. Highest-scored of the 2025 ice driver batch.

Who can reach it

Authenticated local user; extends to tenants on VF/RDMA-exposing nodes.

What to do

Fixed in the Intel out-of-tree ice driver (or in-kernel equivalent). Updating the driver requires unloading and reloading the module, which drops every link on that NIC - on a node whose RDMA fabric carries collective traffic, that is a job-killing event, so drain first. If you take it via a distro kernel update instead, it is a reboot. No firmware flash for the driver-side fixes. Target ice 1.17.2 or later.

References

Related entries

All Kernel, userspace & hypervisor entries

This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.