CVE-2025-38743: High severity Dell iDRAC Service Module vulnerability
Dell iDRAC Service Module (iSM), versions prior to 6.0.3.0, contains a Buffer Access with Incorrect Length Value vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Code execution and Elevation of privileges.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-38743?
CVE-2025-38743 is considered a vulnerability that could lead to code execution and elevation of privileges but is categorized with low severity due to requiring local access.
How do I fix CVE-2025-38743?
To fix CVE-2025-38743, update your Dell iDRAC Service Module to version 6.0.3.0 or later.
Who is affected by CVE-2025-38743?
CVE-2025-38743 affects users of Dell iDRAC Service Module versions prior to 6.0.3.0.
What type of vulnerability is CVE-2025-38743?
CVE-2025-38743 is a Buffer Access with Incorrect Length Value vulnerability.
Can a remote attacker exploit CVE-2025-38743?
No, a low privileged attacker must have local access to exploit CVE-2025-38743.