CVE-2016-8106

UnknownEPSS 5.13%

Last modified

CVE-2016-8106 is a vulnerability of currently unknown severity. A Denial of Service in Intel Ethernet Controller's X710/XL710 with Non-Volatile Memory Images before version 5.05 allows a remote attacker to stop the controller from processing network traffic working under certain network use conditions.. EPSS estimates a 5.13% chance of exploitation in the next 30 days.

Description

A Denial of Service in Intel Ethernet Controller's X710/XL710 with Non-Volatile Memory Images before version 5.05 allows a remote attacker to stop the controller from processing network traffic working under certain network use conditions.

Metrics

EPSS Probability
5.13%

91.3th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
IntelEthernet Controller X710 Firmware<= 5.04
IntelEthernet Controller Xl710 Firmware<= 5.04
HpEthernet 10gb 2-Port 562flr-Sfp\+All versions
HpEthernet 10gb 2-Port 562sfp\+All versions
HpEthernet 10gb 4-Port 563sfp\+All versions
HpProliant Xl260a G9 ServerAll versions
LenovoConverged Hx Series5.05
LenovoConverged Hx5500 Appliance5.05
LenovoConverged Hx5510 Appliance5.05
LenovoConverged Hx7500 Appliance5.05
LenovoConverged Hx7510 Appliance5.05
LenovoNextscale Nx360 M55.05
LenovoSystem X3250 M55.05
LenovoSystem X3500 M55.05
LenovoSystem X3550 M55.05
LenovoSystem X3650 M55.05
LenovoSystem X3750 M45.05
LenovoSystem X3850 X65.05
LenovoSystem X3950 X65.05
LenovoThinkagile Cx22005.05
LenovoThinkagile Cx42005.05
LenovoThinkagile Cx46005.05
LenovoThinkserver Rd3505.05
LenovoThinkserver Rd4505.05
LenovoThinkserver Rd5505.05
LenovoThinkserver Rd6505.05
LenovoThinkserver Sd3505.05
LenovoThinkserver Td3505.05

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2016-8106?
A Denial of Service in Intel Ethernet Controller's X710/XL710 with Non-Volatile Memory Images before version 5.05 allows a remote attacker to stop the controller from processing network traffic working under certain network use conditions.
How severe is CVE-2016-8106?
Severity scoring for CVE-2016-8106 is pending analysis. The EPSS model estimates a 5.13% probability of exploitation in the next 30 days.
How do I fix CVE-2016-8106?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2016-8106?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST