Authentication Bypass Vulnerability in OpenBMC Software by OpenBMC
CVE-2021-39296
10CRITICAL
What is CVE-2021-39296?
In OpenBMC version 2.9, a vulnerability exists that allows attackers to send specially crafted IPMI messages. This enables bypassing of authentication mechanisms, granting unauthorized access and full control over the system. Such vulnerabilities can lead to significant risk if unaddressed, making it crucial for users to apply security updates promptly.
