PT-2023-20118 · Ami+1 · Ami Megarac Bmc+1

Published

2023-04-22

·

Updated

2023-04-29

·

CVE-2023-25505

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions NVIDIA DGX-1 BMC (affected versions not specified)
Description The issue is related to a buffer overflow in the IPMI handler of the AMI MegaRAC BMC. An attacker with the appropriate level of authorization can cause this buffer overflow, potentially leading to denial of service, information disclosure, or arbitrary code execution.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2023-25505

Affected Products

Ami Megarac Bmc
Nvidia Dgx-1 Bmc