CVE-2021-26581

A potential security vulnerability has been identified in HPE Superdome Flex server. A denial of service attack can be remotely exploited leaving hung connections to the BMC web interface. The monarch BMC must be rebooted to recover from this situation. Other BMC management is not impacted. HPE has made the following software update to resolve the vulnerability in HPE Superdome Flex Server: Superdome Flex Server Firmware 3.30.142 or later.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:hpe:superdome_flex_server_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hpe:superdome_flex_server:-:*:*:*:*:*:*:*

History

06 Apr 2021, 18:50

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : 4.0
v3 : 6.5
CWE NVD-CWE-noinfo
CPE cpe:2.3:o:hpe:superdome_flex_server_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hpe:superdome_flex_server:-:*:*:*:*:*:*:*
References (MISC) https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf04102en_us - (MISC) https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf04102en_us - Vendor Advisory

01 Apr 2021, 19:28

Type Values Removed Values Added
New CVE

Information

Published : 2021-04-01 19:15

Updated : 2023-12-10 13:55


NVD link : CVE-2021-26581

Mitre link : CVE-2021-26581

CVE.ORG link : CVE-2021-26581


JSON object : View

Products Affected

hpe

  • superdome_flex_server
  • superdome_flex_server_firmware