First published: Fri Jan 29 2021(Updated: )
The Baseboard Management Controller(BMC) in HPE Cloudline CL5800 Gen9 Server; HPE Cloudline CL5200 Gen9 Server; HPE Cloudline CL4100 Gen10 Server; HPE Cloudline CL3100 Gen10 Server; HPE Cloudline CL5800 Gen10 Server BMC firmware has a local buffer overlfow in spx_restservice addlicense_func function.
Credit: security-alert@hpe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hpe Cloudline Cl5800 Gen10 Server Firmware | =1.08.0.0 | |
HPE Cloudline CL5800 Gen10 Server | ||
Hpe Cloudline Cl3100 Gen10 Server Firmware | =1.10.0.0 | |
HPE Cloudline CL3100 Gen10 Server | ||
Hpe Cloudline Cl4100 Gen10 Server Firmware | =1.10.0.0 | |
HPE Cloudline CL4100 Gen10 Server | ||
Hpe Cloudline Cl5200 Gen9 Server Firmware | =1.07.0.0 | |
HPE Cloudline CL5200 Gen9 Server | ||
Hpe Cloudline Cl5800 Gen9 Server Firmware | =1.09.0.0 | |
HPE Cloudline CL5800 Gen9 Server |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-25123.
The severity level of CVE-2021-25123 is high with a severity value of 7.8.
HPE Cloudline CL5800 Gen10 Server Firmware version 1.08.0.0 and HPE Cloudline CL3100 Gen10 Server Firmware version 1.10.0.0 are affected by this vulnerability.
To fix CVE-2021-25123, update the firmware of HPE Cloudline CL5800 Gen10 Server to version 1.08.0.1 and HPE Cloudline CL3100 Gen10 Server to version 1.10.0.1.
You can find more information about CVE-2021-25123 on the HPE Support website.