First published: Fri Jan 29 2021(Updated: )
The Baseboard Management Controller(BMC) in HPE Cloudline CL5800 Gen9 Server; HPE Cloudline CL5200 Gen9 Server; HPE Cloudline CL4100 Gen10 Server; HPE Cloudline CL3100 Gen10 Server; HPE Cloudline CL5800 Gen10 Server BMC firmware has a local buffer overlfow in spx_restservice setsolvideoremotestorage_func function.
Credit: security-alert@hpe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hpe Cloudline Cl3100 Gen10 Server Firmware | =1.08.0.0 | |
Hpe Cloudline Cl3100 Gen10 Server Firmware | =1.10.0.0 | |
HPE Cloudline CL3100 Gen10 Server | ||
Hpe Cloudline Cl4100 Gen10 Server Firmware | =1.08.0.0 | |
Hpe Cloudline Cl4100 Gen10 Server Firmware | =1.10.0.0 | |
HPE Cloudline CL4100 Gen10 Server | ||
Hpe Cloudline Cl5200 Gen9 Server Firmware | =1.07.0.0 | |
HPE Cloudline CL5200 Gen9 Server | ||
Hpe Cloudline Cl5800 Gen10 Server Firmware | =1.08.0.0 | |
HPE Cloudline CL5800 Gen10 Server | ||
Hpe Cloudline Cl5800 Gen9 Server Firmware | =1.09.0.0 | |
HPE Cloudline CL5800 Gen9 Server |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-25136 is a vulnerability in the Baseboard Management Controller (BMC) firmware of HPE Cloudline servers.
The severity of CVE-2021-25136 is high with a CVSS score of 7.8.
The HPE Cloudline CL5800 Gen9 Server, CL5200 Gen9 Server, CL4100 Gen10 Server, and CL3100 Gen10 Server are affected by CVE-2021-25136.
CVE-2021-25136 can lead to a local buffer overflow in the BMC firmware of HPE Cloudline servers.
To fix CVE-2021-25136, update the BMC firmware to the latest version provided by HPE.