Database/Firmware, BMC & network fabric
Intel Ethernet Network Adapter E810 (100GbE) firmware: Out-of-bounds read in 100GbE E810 firmware reachable
Impact
Out-of-bounds read in 100GbE E810 firmware reachable from privileged host software, causing denial of service. The version threshold here (cvl fw 1.7.6, cpk 1.3.7) is different again from the other E810 advisories — the E810 firmware CVE trail is long enough that version-by-CVE tracking is not workable and operators should treat it as a rolling minimum-version policy.
Who can reach it
Privileged local software on the host (Ring 0).
What to do
Flash E810 firmware to at least cvl fw 1.7.6 / cpk 1.3.7 — and given the later advisories, go straight to 1.7.8.x or newer. Cold power cycle, per node.
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.