Description
Dell Chassis Management Controller Firmware for Dell PowerEdge FX2, version(s) prior to 2.40.200.202101130302, and Dell Chassis Management Controller Firmware for Dell PowerEdge VRTX version(s) prior to 3.41.200.202209300499, contain(s) a Stack-based Buffer Overflow vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Remote execution.
Problem types
CWE-121: Stack-based Buffer Overflow
Product status
Any version before 2.40.200.202101130302
Any version before 3.41.200.202209300499
Credits
Dell would like to thank Aliz Hammond of watchTowr for reporting these issues
References
www.dell.com/...-dell-poweredge-fx2-and-vrtx-vulnerabilities