First published: Tue May 25 2021(Updated: )
A local buffer overflow vulnerability was discovered in HPE Integrated Lights-Out 4 (iLO 4); HPE SimpliVity 380 Gen9; HPE Integrated Lights-Out 5 (iLO 5) for HPE Gen10 Servers; HPE SimpliVity 380 Gen10; HPE SimpliVity 2600; HPE SimpliVity 380 Gen10 G; HPE SimpliVity 325; HPE SimpliVity 380 Gen10 H version(s): Prior to version 2.78.
Credit: security-alert@hpe.com
Affected Software | Affected Version | How to fix |
---|---|---|
HP Integrated Lights-Out 4 Firmware | <2.78 | |
HP SimpliVity 380 Gen9 Firmware | ||
HP Integrated Lights-Out 5 firmware | <2.44 | |
HPE ProLiant BL460c Gen10 Server Blade | ||
HP ProLiant dl120 Gen10 | ||
HP ProLiant dl160 Gen10 | ||
HP ProLiant DL180 Gen10 | ||
HPE ProLiant DL20 Gen10 Server firmware | ||
HPE ProLiant DL325 Gen10 Plus Server | ||
HPE ProLiant DL325 Gen10 Server | ||
HPE ProLiant DL360 Gen10 Server | ||
HPE ProLiant DL380 Gen10 Server | ||
HPE ProLiant DL385 Gen10 Plus Server | ||
HP ProLiant dl385 Gen10 | ||
HP ProLiant dl560 Gen10 | ||
HP ProLiant dl580 Gen10 | ||
HP ProLiant ML110 Gen10 | ||
HPE ProLiant ML30 Gen10 Server | ||
HP ProLiant ML350 Gen10 | ||
HP ProLiant xl170r Gen10 | ||
HPE ProLiant XL190r Gen10 Server | ||
HP ProLiant xl230k Gen10 | ||
HPE ProLiant XL270d Gen10 Server | ||
HPE ProLiant XL450 Gen10 Server | ||
HP SimpliVity 2600 | ||
HPE SimpliVity 325 Gen10 | ||
HP SimpliVity 380 Gen10 g | ||
HPE SimpliVity 380 Gen10 | ||
HPE SimpliVity 380 Gen10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-29202 is a local buffer overflow vulnerability discovered in HPE Integrated Lights-Out 4 (iLO 4), HPE SimpliVity, and HPE Integrated Lights-Out 5 (iLO 5) for HPE Gen10 Servers.
The severity of CVE-2021-29202 is medium (6.7).
CVE-2021-29202 affects HPE Integrated Lights-Out 4 (iLO 4), HPE SimpliVity, and HPE Integrated Lights-Out 5 (iLO 5) for HPE Gen10 Servers.
To fix CVE-2021-29202, apply the necessary updates or patches provided by HPE.
You can find more information about CVE-2021-29202 on the HPE support website.