First published: Mon Feb 08 2021(Updated: )
The Baseboard Management Controller (BMC) firmware in HPE Apollo 70 System prior to version 3.0.14.0 has a local buffer overflow in libifc.so webgeneratesslcfg function.
Credit: security-alert@hpe.com
Affected Software | Affected Version | How to fix |
---|---|---|
HPE Baseboard Management Controller | <3.0.14.0 | |
HPE Apollo 70 System |
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf04080en_us
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-26573.
The severity of CVE-2021-26573 is high, with a severity value of 7.8.
The HPE Apollo 70 System with Baseboard Management Controller (BMC) firmware prior to version 3.0.14.0 is affected by CVE-2021-26573.
CVE-2021-26573 can cause a local buffer overflow in the libifc.so webgeneratesslcfg function of the Baseboard Management Controller (BMC) firmware in the HPE Apollo 70 System.
Yes, updating the HPE Apollo 70 System's Baseboard Management Controller (BMC) firmware to version 3.0.14.0 or higher will fix CVE-2021-26573.