# CVE-2024-39286

## Summary

- **CVE ID:** CVE-2024-39286
- **Severity:** LOW
- **CVSS Score:** 3.3 (CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N)
- **CWE:** CWE-279
- **Published:** Feb 12, 2025
- **Last Modified:** Mar 13, 2026

## Description

Incorrect execution-assigned permissions in the Linux kernel mode driver for the Intel(R) 800 Series Ethernet Driver before version 1.15.4 may allow an authenticated user to potentially enable information disclosure via local access.

## Affected Products

- n/a — Intel(R) 800 Series Ethernet Driver (before version 1.15.4)

## References

- [CNA](https://intel.com/content/www/us/en/security-center/advisory/intel-sa-01236.html)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.23%
- **EPSS Percentile:** 14.2

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-12._