Vulnerability Description
Out of bounds read in firmware for OpenBMC in some Intel(R) platforms before version 0.72 may allow unauthenticated user to potentially enable denial of service via network access.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Openbmc-Project | Openbmc | < 0.72 |
| Intel | C621A | - |
| Intel | C624A | - |
| Intel | C627A | - |
| Intel | C629A | - |
| Intel | Xeon Gold 5315Y | - |
| Intel | Xeon Gold 5317 | - |
| Intel | Xeon Gold 5318H | - |
| Intel | Xeon Gold 5318N | - |
| Intel | Xeon Gold 5318S | - |
| Intel | Xeon Gold 5318Y | - |
| Intel | Xeon Gold 5320 | - |
| Intel | Xeon Gold 5320H | - |
| Intel | Xeon Gold 5320T | - |
| Intel | Xeon Gold 6312U | - |
| Intel | Xeon Gold 6314U | - |
| Intel | Xeon Gold 6326 | - |
| Intel | Xeon Gold 6328H | - |
| Intel | Xeon Gold 6328Hl | - |
| Intel | Xeon Gold 6330 | - |
Related Weaknesses (CWE)
References
- http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00737.hVendor Advisory
- http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00737.hVendor Advisory
FAQ
What is CVE-2022-35729?
CVE-2022-35729 is a vulnerability with a CVSS score of 7.5 (HIGH). Out of bounds read in firmware for OpenBMC in some Intel(R) platforms before version 0.72 may allow unauthenticated user to potentially enable denial of service via network access.
How severe is CVE-2022-35729?
CVE-2022-35729 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-35729?
Check the references section above for vendor advisories and patch information. Affected products include: Openbmc-Project Openbmc, Intel C621A, Intel C624A, Intel C627A, Intel C629A.