[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250039

 
 

909

 
 

195882

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS2-2020-1420 --- ipmitool, bmc-snmp-proxy, exchange-bmc-os-info

ID: oval:org.secpod.oval:def:1700326Date: (C)2020-05-11   (M)2023-11-13
Class: PATCHFamily: unix




It"s been found that multiple functions in ipmitool before 1.8.19 neglect proper checking of the data received from a remote LAN party, which may lead to buffer overflows and potentially to remote code execution on the ipmitool side. This is especially dangerous if ipmitool is run as a privileged user. This problem is fixed in version 1.8.19

Platform:
Amazon Linux 2
Product:
ipmitool
bmc-snmp-proxy
exchange-bmc-os-info
Reference:
ALAS2-2020-1420
CVE-2020-5208
CVE    1
CVE-2020-5208
CPE    2
cpe:/o:amazon:linux:2
cpe:/a:corey_minyard:ipmtool

© SecPod Technologies