Database/Firmware, BMC & network fabric
Dell iDRAC (u-boot): Improper error handling grants access to the u-boot shell — pre-BMC-OS control, i.e
CVSS 6.8CVE-2018-15776Firmware, BMC & network fabriccurated
Impact
Improper error handling grants access to the u-boot shell — pre-BMC-OS control, i.e. below even the BMC firmware image
Who can reach it
Local / serial-adjacent
What to do
Firmware update; a u-boot foothold survives BMC firmware reflash, so affected nodes need physical verification rather than a remote fix
References
Related entries
- Intel SSD DC S4500 and SSD DC S4600 series firmware before SCV10150 - improper authentication: Improper authenticationCVE-2018-18095 · Intel SSD DC S4500 and SSD DC S4600 series firmware before SCV10150 - improper authenticationMedium
- Intel Boot Guard in Intel CSME / TXE / SPS: Insecure default initialisation in Boot Guard means the S3 resume path doesCVE-2020-8705 · Intel Boot Guard in Intel CSME / TXE / SPSMedium
- Intel / Solidigm SSD, SSD DC and Optane SSD firmwareCVE-2021-33077 · Intel / Solidigm SSD, SSD DC and Optane SSD firmware - control-flow flaw and uncleared debug data reachable over…Medium
- Intel Boot Guard and Intel TXT (hardware debug / INIT): Hardware debug modes and processor INIT handling can overrideCVE-2022-0004 · Intel Boot Guard and Intel TXT (hardware debug / INIT)Medium
- AMD Secure Processor secure boot - voltage fault injection (AMD-SB-4005): Voltage fault injection against the ASPCVE-2023-20589 · AMD Secure Processor secure boot - voltage fault injection (AMD-SB-4005)Medium
- Trend Micro Endpoint Encryption Full Disk Encryption (UEFI pre-boot): A signed pre-boot component that allows SecureCVE-2023-28005 · Trend Micro Endpoint Encryption Full Disk Encryption (UEFI pre-boot)Medium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.