CVE-2024-25947: Medium severity dell emc idrac service module vulnerability
Published Aug 1, 2024
·Updated
Dell iDRAC Service Module version 5.3.0.0 and prior, contain an Out of bound Read Vulnerability. A privileged local attacker could execute arbitrary code potentially resulting in a denial of service event.
Affected Software
1 affected component
Dell EMC iDRAC Service Module<5.3.1.0
Event History
Aug 1, 2024
CVE Published
via MITRE·07:04 AM
Data Sourced
via MITRE·07:04 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·07:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-25947?
CVE-2024-25947 is classified as a critical severity vulnerability due to the potential for arbitrary code execution.
2
How do I fix CVE-2024-25947?
To fix CVE-2024-25947, upgrade the Dell EMC iDRAC Service Module to version 5.3.1.0 or later.
3
What type of vulnerability is CVE-2024-25947?
CVE-2024-25947 is an Out of Bounds Read vulnerability.
4
Who is affected by CVE-2024-25947?
CVE-2024-25947 affects users of Dell EMC iDRAC Service Module version 5.3.0.0 and earlier.
5
What can an attacker do with CVE-2024-25947?
A privileged local attacker could execute arbitrary code, potentially resulting in a denial of service event due to CVE-2024-25947.