openbmc-project records
7 published records for vendor openbmc-project.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 28.6%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')1
- CWE-121 Stack-based Buffer Overflow1
- CWE-122 Heap-based Buffer Overflow1
- CWE-125 Out-of-bounds Read1
- CWE-276 Incorrect Default Permissions1
- CWE-287 Improper Authentication1
The weakness classes this vendor ships most often: where to look.
CWEAll records
7 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
41Plan | CVE-2021-39296No exploit | In OpenBMC 2.9, crafted IPMI messages allow an attacker to bypass authentication and gain full control of the system.openbmc-project · openbmc · CWE-287 | Critical10.0 | — | 3.0% | Sep 9, 2021 |
39Monitor | CVE-2024-41660No exploit | slpd-lite unauthenticated memory corruptionopenbmc · slpd-lite · CWE-120 | Critical9.8 | — | 0.9% | Jul 31, 2024 |
36Monitor | CVE-2020-14156No exploit | user_channel/passwd_mgr.cpp in OpenBMC phosphor-host-ipmid before 2020-04-03 does not ensure that /etc/ipmi-pass has strong file permissionsopenbmc-project · openbmc · CWE-276 | High8.8 | — | 1.8% | Jun 15, 2020 |
30Monitor | CVE-2021-39295No exploit | In OpenBMC 2.9, crafted IPMI messages allow an attacker to cause a denial of service to the BMC via the netipmid (IPMI lan+) interface.openbmc-project · openbmc · CWE-400 | High7.5 | — | 1.3% | Apr 15, 2023 |
30Monitor | CVE-2022-35729No exploit | Out of bounds read in firmware for OpenBMC in some Intel(R) platforms before version 0.72 may allow unauthenticated user to potentially enabintel · c621a · CWE-125 | High7.5 | — | 0.7% | Feb 16, 2023 |
30Monitor | CVE-2022-2809No exploit | Unauthenticated out of bounds heap write in bmcwebopenbmc-project · openbmc · CWE-122 | High7.5 | — | 0.6% | Oct 27, 2022 |
30Monitor | CVE-2022-3409No exploit | Unauthenticated out of bounds stack write in bmcwebopenbmc-project · openbmc · CWE-121 | High7.5 | — | 0.6% | Oct 27, 2022 |
- CVE-2021-3929641Plan
In OpenBMC 2.9, crafted IPMI messages allow an attacker to bypass authentication and gain full control of the system.
CriticalCVSS 10.0No exploitEPSS 3%openbmc-project · openbmcSep 9, 2021
- CVE-2024-4166039Monitor
slpd-lite unauthenticated memory corruption
CriticalCVSS 9.8No exploitEPSS 1%openbmc · slpd-liteJul 31, 2024
- CVE-2020-1415636Monitor
user_channel/passwd_mgr.cpp in OpenBMC phosphor-host-ipmid before 2020-04-03 does not ensure that /etc/ipmi-pass has strong file permissions
HighCVSS 8.8No exploitEPSS 2%openbmc-project · openbmcJun 15, 2020
- CVE-2021-3929530Monitor
In OpenBMC 2.9, crafted IPMI messages allow an attacker to cause a denial of service to the BMC via the netipmid (IPMI lan+) interface.
HighCVSS 7.5No exploitEPSS 1%openbmc-project · openbmcApr 15, 2023
- CVE-2022-3572930Monitor
Out of bounds read in firmware for OpenBMC in some Intel(R) platforms before version 0.72 may allow unauthenticated user to potentially enab
HighCVSS 7.5No exploitEPSS 1%intel · c621aFeb 16, 2023
- CVE-2022-280930Monitor
Unauthenticated out of bounds heap write in bmcweb
HighCVSS 7.5No exploitEPSS 1%openbmc-project · openbmcOct 27, 2022
- CVE-2022-340930Monitor
Unauthenticated out of bounds stack write in bmcweb
HighCVSS 7.5No exploitEPSS 1%openbmc-project · openbmcOct 27, 2022