MEDIUM✓ PATCH🇬🇧 English

CVE-2023-31189

CVSS 5.2v3.1pub. 2024-02-14upd. 2026-01-14

Improper authentication in some Intel(R) Server Product OpenBMC firmware before version egs-1.09 may allow an authenticated user to enable escalation of privilege via local access.

oryginał EN
CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N
  • Intel Openbmc

    OS
    Intel
    < egs-1.09
  • Intel Xeon Bronze 3408u

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 5403n

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 5411n

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 5412u

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 5415\+

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 5416s

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 5418n

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 5418y

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 5420\+

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 5423n

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 5433n

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 6403n

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 6414u

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 6416h

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 6418h

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 6421n

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 6423n

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 6426y

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 6428n

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 6430

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 6433n

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 6433ne

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 6434

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 6434h

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 6438m

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 6438n

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 6438y\+

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 6442y

    HW
    Intel
    wszystkie wersje
  • Intel Xeon Gold 6443n

    HW
    Intel
    wszystkie wersje
🟢
PATCH DOSTĘPNY
Aktualizacja od producenta gotowa. Wdrożenie w ramach standardowego cyklu.
Tagi
Auth Bypass
CWE
Referencje

Powiązane podatności

CVE-2026-20898HIGH8.5ten sam produkt

Improper access control in the firmware for some in Alias Checking Trusted Module for some Intel(R) Xeon(R) pr...

CVE-2026-20885HIGH7.0ten sam produkt

Improper authentication in the Intel(R) TDX module for some Intel(R) platforms within Ring 0: Trust Domain may...

CVE-2026-20775MEDIUM6.8ten sam produkt

Uncaught exception for some Intel(R) TDX modules within Ring 0: Trust Domain may allow a denial of service. Sy...

CVE-2026-20705MEDIUM6.8ten sam produkt

Insecure storage of sensitive information in the Intel(R) TDX module for some Intel(R) platform within Ring 0:...

CVE-2026-20901MEDIUM4.0ten sam produkt

Improper input validation for some Intel(R) Xeon(R) processors within firmware may allow an escalation of priv...