CVE-2024-21828: Intel Ethernet Adapter Complete Driver Pack

Medium severity, CVSS 6.7. EPSS: 0.2% chance of exploitation in the next 30 days.

Improper access control in some Intel(R) Ethernet Controller Administrative Tools software before version 28.3 may allow an authenticated user to potentially enable escalation of privilege via local access.

Affected products

  • Intel Ethernet Adapter Complete Driver Pack: before 28.3 (fixed in 28.3)
  • Intel Ethernet Connections Boot Utility Preboot Images And Efi Drivers: before 28.3 (fixed in 28.3)

Published 2024-05-16. Last modified 2026-06-17.