NVIDIA BMC SPX REST API Memory Context Vulnerability

NVIDIA BMC SPX REST API Memory Context Vulnerability

CVE-2022-42278 · HIGH Severity

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

NVIDIA BMC contains a vulnerability in SPX REST API, where an authorized attacker can read and write to arbitrary locations within the memory context of the IPMI server process, which may lead to code execution, denial of service, information disclosure and data tampering.

Learn more about our Cis Benchmark Audit For Server Software.