Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2024-8037

Опубликовано: 14 окт. 2024
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2024-8037: OpenIPMI security update (MODERATE)

[2.0.32-5.0.1]

  • IPMI SMB kernel module name is ipmi_ssif in all modern kernels. openipmi-helper script fixed. [Orabug: 27093288] (alexey.petrenko@oracle.com)

[2.0.32-5]

  • Update the patch for CVE-2024-42934 to add a missing upstream commit from 2.0.36: 663e3cd3

[2.0.32-4]

  • Backport two commits from 2.0.36 to add checks in ipmi_sim and ipmilan (CVE-2024-42934)

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

OpenIPMI

2.0.32-5.0.1.el9_4

OpenIPMI-devel

2.0.32-5.0.1.el9_4

OpenIPMI-lanserv

2.0.32-5.0.1.el9_4

OpenIPMI-libs

2.0.32-5.0.1.el9_4

Oracle Linux x86_64

OpenIPMI

2.0.32-5.0.1.el9_4

OpenIPMI-devel

2.0.32-5.0.1.el9_4

OpenIPMI-lanserv

2.0.32-5.0.1.el9_4

OpenIPMI-libs

2.0.32-5.0.1.el9_4

Связанные CVE

Связанные уязвимости

CVSS3: 5
ubuntu
8 месяцев назад

OpenIPMI before 2.0.36 has an out-of-bounds array access (for authentication type) in the ipmi_sim simulator, resulting in denial of service or (with very low probability) authentication bypass or code execution.

CVSS3: 5
redhat
10 месяцев назад

OpenIPMI before 2.0.36 has an out-of-bounds array access (for authentication type) in the ipmi_sim simulator, resulting in denial of service or (with very low probability) authentication bypass or code execution.

CVSS3: 5
nvd
8 месяцев назад

OpenIPMI before 2.0.36 has an out-of-bounds array access (for authentication type) in the ipmi_sim simulator, resulting in denial of service or (with very low probability) authentication bypass or code execution.

CVSS3: 5
msrc
8 месяцев назад

Описание отсутствует

CVSS3: 5
debian
8 месяцев назад

OpenIPMI before 2.0.36 has an out-of-bounds array access (for authenti ...