CVE-2021-25131: Buffer Overflow
The Baseboard Management Controller(BMC) in HPE Cloudline CL5800 Gen9 Server; HPE Cloudline CL5200 Gen9 Server; HPE Cloudline CL4100 Gen10 Server; HPE Cloudline CL3100 Gen10 Server; HPE Cloudline CL5800 Gen10 Server BMC firmware has a local buffer overlfow in spxrestservice setfwimagelocationfunc function.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-25131?
CVE-2021-25131 is a vulnerability in the Baseboard Management Controller (BMC) firmware of certain HPE Cloudline servers.
How severe is CVE-2021-25131?
CVE-2021-25131 has a severity rating of 7.8, which is considered high.
Which HPE Cloudline servers are affected by CVE-2021-25131?
CVE-2021-25131 affects HPE Cloudline CL5800 Gen9 Server, HPE Cloudline CL5200 Gen9 Server, HPE Cloudline CL4100 Gen10 Server, and HPE Cloudline CL3100 Gen10 Server.
What is the impact of CVE-2021-25131?
CVE-2021-25131 allows for a local buffer overflow in the spx_restservice setfwimagelocation_func function of the BMC firmware.
How can I fix CVE-2021-25131?
To fix CVE-2021-25131, it is recommended to update the BMC firmware of the affected HPE Cloudline servers to a non-vulnerable version.