CVE-2026-85508
ipmi-oem in FreeIPMI before 1.6.19 has a stack-based buffer overflow in _output_dell_system_info_cmc_ipv6_info in ipmi-oem/ipmi-oem-dell.c (cmc-ipv6-info subcommand to dell get-system-info).
CVSS v3.1
Current9.8CRITICALcve@mitre.orgAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
NetworkAV:N
Attack Complexity
LowAC:L
Privileges Required
NonePR:N
User Interaction
NoneUI:N
Scope
UnchangedS:U
Confidentiality Impact
HighC:H
Integrity Impact
HighI:H
Availability Impact
HighA:H
CVSS temporel
Estimation8.2E:U/RL:O/RC:R
Temporal score updated on 4 Sept 2026, 07:36
Source: PatchCVE heuristic estimate (CISA KEV, EPSS from FIRST.org, NVD reference tags, NVD status) — not published by a CNA.
Exploit Code Maturity
UnprovenE:U
No known exploit
No known exploit: absent from CISA KEV and exploit-db, no reference tagged Exploit, SSVC reports no exploitation — Unproven
Remediation Level
Official FixRL:O
Detected in the description
Report Confidence
ReasonableRC:R
NVD status: Received
References — 5
- https://nvd.nist.gov/vuln/detail/CVE-2026-85508(nvd.nist.gov)Official source
- https://ftp.gnu.org/gnu/freeipmi/freeipmi-1.6.19.tar.gz(cve@mitre.org)
- https://www.gnu.org/software/freeipmi/(cve@mitre.org)
- https://www.openwall.com/lists/oss-security/2026/08/28/5(cve@mitre.org)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-70886(euvd.enisa.europa.eu)Official source