CyberRota Analysis
AI-GeneratedA stack-based buffer overflow vulnerability exists in the _output_dell_system_info_cmc_info function of the ipmi-oem component in FreeIPMI versions prior to 1.6.19. This flaw can be exploited to execute arbitrary code, potentially allowing attackers to gain control over affected systems. Organizations using FreeIPMI, particularly those managing Dell hardware, should prioritize patching to mitigate the risk of exploitation.
CVE
CVE-2026-85507
Severity
CRITICAL
CVSS
9.8
EPSS
0.39%
Original NVD Description
ipmi-oem in FreeIPMI before 1.6.19 has a stack-based buffer overflow in _output_dell_system_info_cmc_info in ipmi-oem/ipmi-oem-dell.c (cmc-info subcommand to dell get-system-info).