CVE-2022-22488: IBM OpenBMC denial of service
IBM BMC could allow a privileged user to cause a denial of service by uploading or deleting too many CA certificates in a short period of time.
Other sources
IBM OpenBMC OP910 and OP940 could allow a privileged user to cause a denial of service by uploading or deleting too many CA certificates in a short period of time. IBM X-Force ID: 2226337.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-22488?
The severity of CVE-2022-22488 is classified as medium, as it allows a denial of service for privileged users.
How do I fix CVE-2022-22488?
To fix CVE-2022-22488, update the IBM OpenBMC OP910 and OP940 to the latest firmware that addresses the vulnerability.
Who is affected by CVE-2022-22488?
CVE-2022-22488 affects IBM OpenBMC OP910 and OP940 users, along with specific IBM Power System AC922 firmware versions.
What risk does CVE-2022-22488 pose?
CVE-2022-22488 poses a risk of denial of service due to excessive uploading or deleting of CA certificates by privileged users.
Is CVE-2022-22488 an exploit or a vulnerability?
CVE-2022-22488 is a vulnerability that could be exploited by privileged users to cause a denial of service.