CVE-2024-42934

Oct. 10, 2024, 12:51 p.m.

Product(s) Impacted

OpenIPMI

  • before 2.0.36

Description

OpenIPMI before 2.0.36 has an out-of-bounds array access (for authentication type) in the ipmi_sim simulator, resulting in denial of service or (with very low probability) authentication bypass or code execution.

Weaknesses

Date

Published: Oct. 9, 2024, 5:15 a.m.

Last Modified: Oct. 10, 2024, 12:51 p.m.

Status : Awaiting Analysis

CVE has been recently published to the CVE List and has been received by the NVD.

More info

Source

cve@mitre.org

References