CVE-2026-85506: Buffer Overflow
Published Sep 4, 2026
·Updated
ipmi-oem in FreeIPMI before 1.6.19 has a stack-based buffer overflow in getdellsysteminfoidracinfo in ipmi-oem/ipmi-oem-dell.c (idrac-info subcommand to dell get-system-info).
Affected Software
1 affected component
FreeIPMI<1.6.19
Event History
Sep 4, 2026
CVE Published
via MITRE·04:17 AM
Data Sourced
via MITRE·04:17 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Which releases contain the fix?
FreeIPMI 1.6.19 includes the fix. Versions before 1.6.19 are affected.
2
What access does an attacker need?
The supplied severity vector indicates network-reachable exploitation with no privileges or user interaction required.
3
Which functionality is involved?
The affected code is reached through the idrac-info subcommand of dell get-system-info in ipmi-oem.