CRITICAL🇵🇱 Wersja polska

CVE-2023-3043

CVSS 9.6v3.1pub. 2024-01-09upd. 2024-11-21

AMI’s SPx contains a vulnerability in the BMC where an Attacker may cause a stack-based buffer overflow via an adjacent network. A successful exploitation of this vulnerability may lead to a loss of confidentiality, integrity, and/or availability.

🤖 AI Analysis
How it works

An attacker present in the same network (adjacent network) can send specially crafted data to the BMC (Baseboard Management Controller) component, causing a stack-based buffer overflow (CWE-121, CWE-787). The overflow results from insufficient validation of the size of data being written to a fixed-size buffer. The attack does not require authentication or user interaction.

Impact

An attacker can gain unauthorized access to sensitive data, modify system state, or cause system unavailability. In the most severe scenario, remote code execution (RCE) in the context of the vulnerable BMC component is possible.

Mitigation & patch

Patches available from the vendor should be applied in accordance with references (AMI security bulletin AMI-SA-2023010 available on AMI website). Due to the network attack vector (adjacent network), it is also recommended to isolate BMC/IPMI interfaces from production networks and restrict access to these interfaces to trusted hosts only.

Who is affected

AMI MegaRAC SPx — versions indicated in vendor references (see AMI-SA-2023010 bulletin)

Analysis generated by Claude AI (Anthropic) based on NVD data. Always verify with vendor.
CVSS Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
  • Ami Megarac Sp X

    OS
    Ami
    12 – 12.7 (excl.)13 – 13.6 (excl.)
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
Memory
CWE
References

Related vulnerabilities

CVE-2024-54085CRITICAL10.0⚠ KEVPL ✓same product

AMI MegaRAC SPx — zdalne ominięcie uwierzytelnienia w interfejsie Redfish BMC

CVE-2023-37293CRITICAL9.6PL ✓same product

AMI MegaRAC SPx — stack-based buffer overflow w BMC przez sieć lokalną

CVE-2023-34329CRITICAL9.1PL ✓same product

AMI MegaRAC SPx12 BMC — pominięcie uwierzytelnienia przez spoofing nagłówka HTTP

CVE-2023-28863CRITICAL9.1PL ✓same product

AMI MegaRAC SPx — niewystarczająca weryfikacja autentyczności danych

CVE-2023-34332HIGH7.8same product

AMI’s SPx contains a vulnerability in the BMC where an Attacker may cause an untrusted pointer to d...