CVE-2024-25948

Dell iDRAC Service Module version 5.3.0.0 and prior, contain a Out of bound Write Vulnerability. A privileged local attacker could execute arbitrary code potentially resulting in a denial of service event.
Configurations

Configuration 1 (hide)

cpe:2.3:a:dell:emc_idrac_service_module:*:*:*:*:*:*:*:*

History

02 Aug 2024, 13:55

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 4.8
v2 : unknown
v3 : 4.4
CPE cpe:2.3:a:dell:emc_idrac_service_module:*:*:*:*:*:*:*:*
First Time Dell emc Idrac Service Module
Dell
References () https://www.dell.com/support/kbdoc/en-us/000227444/dsa-2024-086-security-update-for-dell-idrac-service-module-for-memory-corruption-vulnerabilities - () https://www.dell.com/support/kbdoc/en-us/000227444/dsa-2024-086-security-update-for-dell-idrac-service-module-for-memory-corruption-vulnerabilities - Vendor Advisory

01 Aug 2024, 12:42

Type Values Removed Values Added
Summary
  • (es) El módulo de servicio Dell iDRAC versión 5.3.0.0 y anteriores contiene una vulnerabilidad de escritura fuera de los límites. Un atacante local privilegiado podría ejecutar código arbitrario, lo que podría provocar un evento de denegación de servicio.

01 Aug 2024, 08:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-08-01 08:15

Updated : 2024-08-02 13:55


NVD link : CVE-2024-25948

Mitre link : CVE-2024-25948

CVE.ORG link : CVE-2024-25948


JSON object : View

Products Affected

dell

  • emc_idrac_service_module
CWE
CWE-787

Out-of-bounds Write