Description
Out of bounds read in firmware for OpenBMC in some Intel(R) platforms before version 0.72 may allow unauthenticated user to potentially enable denial of service via network access.
Published: 2023-02-16
Score: 7.5 High
EPSS: 1.3% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2022-38603 Out of bounds read in firmware for OpenBMC in some Intel(R) platforms before version 0.72 may allow unauthenticated user to potentially enable denial of service via network access.
History

Mon, 27 Jan 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Subscriptions

Intel C621a C624a C627a C629a Xeon Gold 5315y Xeon Gold 5317 Xeon Gold 5318h Xeon Gold 5318n Xeon Gold 5318s Xeon Gold 5318y Xeon Gold 5320 Xeon Gold 5320h Xeon Gold 5320t Xeon Gold 6312u Xeon Gold 6314u Xeon Gold 6326 Xeon Gold 6328h Xeon Gold 6328hl Xeon Gold 6330 Xeon Gold 6330h Xeon Gold 6330n Xeon Gold 6334 Xeon Gold 6336y Xeon Gold 6338 Xeon Gold 6338n Xeon Gold 6338t Xeon Gold 6342 Xeon Gold 6346 Xeon Gold 6348 Xeon Gold 6348h Xeon Gold 6354 Xeon Platinum 8351n Xeon Platinum 8352m Xeon Platinum 8352s Xeon Platinum 8352v Xeon Platinum 8352y Xeon Platinum 8353h Xeon Platinum 8354h Xeon Platinum 8356h Xeon Platinum 8358 Xeon Platinum 8358p Xeon Platinum 8360h Xeon Platinum 8360hl Xeon Platinum 8360y Xeon Platinum 8362 Xeon Platinum 8368 Xeon Platinum 8368q Xeon Platinum 8376h Xeon Platinum 8376hl Xeon Platinum 8380 Xeon Platinum 8380h Xeon Platinum 8380hl Xeon Silver 4309y Xeon Silver 4310 Xeon Silver 4310t Xeon Silver 4314 Xeon Silver 4316
Openbmc-project Openbmc
cve-icon MITRE

Status: PUBLISHED

Assigner: intel

Published:

Updated: 2025-01-27T18:15:21.307Z

Reserved: 2022-07-22T03:00:26.828Z

Link: CVE-2022-35729

cve-icon Vulnrichment

Updated: 2024-08-03T09:44:21.510Z

cve-icon NVD

Status : Modified

Published: 2023-02-16T21:15:13.023

Modified: 2024-11-21T07:11:33.860

Link: CVE-2022-35729

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses