CVE-2024-42934

NameCVE-2024-42934
DescriptionOpenIPMI before 2.0.36 has an out-of-bounds array access (for authentication type) in the ipmi_sim simulator, resulting in denial of service or (with very low probability) authentication bypass or code execution.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
Debian Bugs1081558

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
openipmi (PTS)bullseye2.0.29-0.1vulnerable
bookworm2.0.33-1vulnerable
sid, trixie2.0.33-1.1vulnerable

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
openipmisource(unstable)(unfixed)1081558

Notes

[bookworm] - openipmi <no-dsa> (Minor issue)
[bullseye] - openipmi <postponed> (Minor issue; can be fixed in next update)
https://bugzilla.redhat.com/show_bug.cgi?id=2308375
Fixed by: https://sourceforge.net/p/openipmi/code/ci/b52e8e2538b2b48ef6b63bff12b5cc9e2d52eff1/ (v2.0.35)
Followup: https://sourceforge.net/p/openipmi/code/ci/4c129d0540f3578ecc078d8612bbf84b6cd24c87/ (v2.0.36)

Search for package or bug name: Reporting problems