SEPTEMBER 15, 2026
Live Feed
Back to database
Case File

CVE-2026-85506

CRITICAL · CVSS 9.8 EPSS 0.39%

Source: NVD + CISA KEV + EPSS · Published 2026-09-04 · Last synced 2026-09-15

CyberRota Analysis

AI-Generated

A stack-based buffer overflow vulnerability exists in the ipmi-oem component of FreeIPMI versions prior to 1.6.19, specifically in the _get_dell_system_info_idrac_info function. This flaw could allow an attacker to execute arbitrary code, potentially compromising the affected system. Organizations utilizing FreeIPMI for Dell systems should prioritize patching to mitigate the risk associated with this critical vulnerability.

CVE
CVE-2026-85506
Severity
CRITICAL
CVSS
9.8
EPSS
0.39%

Original NVD Description

ipmi-oem in FreeIPMI before 1.6.19 has a stack-based buffer overflow in _get_dell_system_info_idrac_info in ipmi-oem/ipmi-oem-dell.c (idrac-info subcommand to dell get-system-info).