PT-2024-12501 · Unknown · Openbmc Firmware

Alexander Gutkin

+2

·

Published

2024-08-14

·

Updated

2024-08-14

·

CVE-2023-35123

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions OpenBMC Firmware versions prior to egs-1.14-0 OpenBMC Firmware versions prior to bhs-0.27
Description The issue is related to an uncaught exception in OpenBMC Firmware for some Intel(R) Server Platforms, which may allow an authenticated user to potentially enable denial of service via network access.
Recommendations For OpenBMC Firmware versions prior to egs-1.14-0, update to version egs-1.14-0 or later. For OpenBMC Firmware versions prior to bhs-0.27, update to version bhs-0.27 or later.

Fix

Weakness Enumeration

Related Identifiers

CVE-2023-35123

Affected Products

Openbmc Firmware