PT-2023-13447 · Openbmc · Openbmc
CVE-2022-35729
·
Publicado
2023-02-16
·
Atualizado
2023-03-06
CVSS v3.1
7.5
Alta
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
OpenBMC versions prior to 0.72
Description
The issue is an out of bounds read in the firmware for OpenBMC in some Intel platforms, which may allow an unauthenticated user to potentially enable denial of service via network access.
Recommendations
For versions prior to 0.72, update to version 0.72 or later to resolve the issue. As a temporary workaround, consider restricting network access to minimize the risk of exploitation.
Correção
Out of bounds Read
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Openbmc