Stack-Based Buffer Overflow in FreeIPMI Affects Dell Systems
CVE-2026-85506
9.8CRITICAL
What is CVE-2026-85506?
Prior to version 1.6.19, FreeIPMI's ipmi-oem module contains a stack-based buffer overflow vulnerability in the function _get_dell_system_info_idrac_info, located in ipmi-oem/ipmi-oem-dell.c. This vulnerability affects the idrac-info subcommand used to retrieve system information from Dell servers, potentially allowing unauthorized users to execute arbitrary code or cause a system crash.
Affected Version(s)
FreeIPMI 0 < 1.6.19
