CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2024-26830: i40e: Do not allow untrusted VF to remove administratively set MAC

mediumCVSS 6.3CVE-2024-26830

CSIRTS triage

What
Untrusted virtual functions can remove administratively configured MAC addresses, allowing denial of service and network isolation bypass.
Who is affected
Systems using Intel i40e network devices with virtual function (VF) support enabled.
Urgency
Medium priority; local privilege escalation and network misconfiguration attacks are possible.
Action
Apply a kernel patch that prevents untrusted VFs from removing administratively set MAC addresses.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch i40e driver

Get an email when a new i40e driver advisory drops — max one per day, one-click unsubscribe.

Details

Source
Microsoft Security Response Center (INTL · vendor-psirt · site)
Severity
medium — CVSS 6.3
Published
2026-08-06
Exploitation
Not in CISA KEV at last sync

Original advisory: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26830

Exploitation outlook

EPSS (FIRST.org) estimates each CVE’s probability of exploitation in the next 30 days — here is the CSIRTS.com read on those numbers.

Referenced CVEs

CVECSIRTS overviewExternal
CVE-2024-26830coverage & exploitation statusNVD · CVE.org

More from Microsoft Security Response Center