Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <ah_YCI0plp3Mx10w@eldamar.lan>
Date: Wed, 3 Jun 2026 09:30:16 +0200
From: Salvatore Bonaccorso <carnil@...ian.org>
To: oss-security@...ts.openwall.com
Subject: Re: Fwd: FreeIPMI 1.6.18 Released with security fixes

Hi,

On Tue, Jun 02, 2026 at 05:52:56PM -0700, Alan Coopersmith wrote:
> The below notes the new release fixes "exploitable buffer overflows in [...]
> ipmi-oem commands".
> 
> I don't see a CVE issued for it yet, as CVE-2026-33554 covered a different
> set of subcommands fixed in the previous 1.6.17 release.

As a followup: CVE-2026-50031 was assigned for the issue fixed in
1.6.18.

Regards,
Salvatore

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.