SB2024052226 - Buffer overflow in IBM Advanced Management Module (AMM) for BladeCenter systems
Published: May 22, 2024
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Buffer overflow (CVE-ID: CVE-2016-2842)
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to a doapr_outch function in crypto/bio/b_print.c in OpenSSL does not verify that a certain memory allocation succeeds. A remote attacker can cause a denial of service (out-of-bounds write or memory consumption) or possibly have unspecified other impact via a long string
Remediation
Install update from vendor's website.