PT-2026-45902 · Freeipmi · Freeipmi
Chnzzh
·
Published
2026-06-03
·
Updated
2026-06-03
·
CVE-2026-50031
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
FreeIPMI versions prior to 1.16.18
Description
The
ipmi-oem client command, which implements Intelligent Platform Management Interface (IPMI) OEM commands for specific hardware vendors, contains buffer overflows on response messages. This issue specifically affects the subcommands "ipmi-oem dell get-active-directory-config" and "ipmi-oem fujitsu get-sel-entry-long-text". IPMI is a specification defining interfaces for platform management, commonly used for remote power control and sensor readings.Recommendations
Update to version 1.16.18 or later.
As a temporary workaround, avoid using the "ipmi-oem dell get-active-directory-config" and "ipmi-oem fujitsu get-sel-entry-long-text" subcommands.
Fix
Stack Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Freeipmi