Executive brief
FreeIPMI is a suite of tools for IPMI (Intelligent Platform Management Interface) system management, which allows administrators to monitor and control servers remotely. A stack-based buffer overflow in the Dell OEM-specific system information command could allow an attacker with network access to execute arbitrary code on affected systems, potentially compromising server management capabilities and gaining deep system access.
Technical details
A stack-based buffer overflow exists in the _output_dell_system_info_cmc_info function within ipmi-oem/ipmi-oem-dell.c, triggered by the cmc-info subcommand to the "dell get-system-info" command. The vulnerability affects FreeIPMI versions before 1.6.19. The buffer overflow can be triggered over the network by sending a specially crafted IPMI command, allowing remote code execution without requiring prior authentication to the IPMI interface. The fix is available in FreeIPMI version 1.6.19 and later.
Affected products
- GNU FreeIPMI before 1.6.19
Timeline
- 2026-09-04: disclosed
- 2026-08-27: patched: FreeIPMI 1.6.19 released