Database/Firmware, BMC & network fabric

EDK II NetworkPkg (PseudoRandom number generation used by the network stack): The weak PRNG behind the previous issue
Impact
The weak PRNG behind the previous issue - the firmware's randomness source is not random enough for anything security-relevant it feeds, including sequence numbers and transaction identifiers used during netboot. The operator-visible consequence is that boot-time network exchanges are spoofable by an attacker who does not need to see them.
Who can reach it
Off-path or on-path attacker predicting firmware-generated values during network boot. Unauthenticated, pre-OS.
What to do
Firmware flash via the server OEM. Reboot per node. There is nothing to configure - the entropy source is compiled in. Until patched, assume boot-time network exchanges are forgeable and lean on cryptographic verification of the boot payload (signed images, Secure Boot with your own keys) rather than on network trust.
References
Related entries
- Lenovo XClarity Controller (XCC) - permission API: An authenticated XCC user can change the permissions of any userCVE-2023-4607 · Lenovo XClarity Controller (XCC) - permission APIHigh
- HPE iLO 5 / iLO 6 (authentication bypass): Authentication bypass on the iLO itself, remotely, with no credentialsCVE-2023-50272 · HPE iLO 5 / iLO 6 (authentication bypass)High
- Linux kernel (drivers/infiniband/sw/siw): When soft-iWARP fails to process an inbound MPA connection requestCVE-2023-52513 · Linux kernel (drivers/infiniband/sw/siw)High
- Phoenix SecureCore (TPM configuration / SetupUtility, unsafe UEFI variable handling in SMM): A buffer overflow in howCVE-2024-0762 · Phoenix SecureCore (TPM configuration / SetupUtility, unsafe UEFI variable handling in SMM)High
- Brocade Fabric OS (firmware download credential capture): Fabric OS captures the SFTP/FTP server password usedCVE-2024-10403 · Brocade Fabric OS (firmware download credential capture)High
- Juniper Junos OS Packet Forwarding Engine (VXLAN + ICMP): A high rate of specific ICMP traffic to a device with VXLANCVE-2024-21595 · Juniper Junos OS Packet Forwarding Engine (VXLAN + ICMP)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.