DSA-2024-295: Security Update for Dell iDRAC8 IPMI Session Vulnerability
Summary:Dell iDRAC8 mitigation is available for predictable IPMI 2.0 session IDs that may be exploited by malicious users to compromise the affected system.
Please select a product to check article relevancy
This article applies to This article does not apply toThis article is not tied to any specific product.Not all product versions are identified in this article.
Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.
For iDRAC8 mitigation, disable IPMI over LAN. IPMI is disabled by default, but if required it can be disabled in the iDRAC web interface by going to Overview > iDRAC Settings > Network > IPMI Settings.