Database/Firmware, BMC & network fabric

Intel UEFI firmware (OutOfBandXML module): Improper initialisation in the OutOfBandXML UEFI module allows a privileged
Impact
Improper initialisation in the OutOfBandXML UEFI module allows a privileged user to disclose information from firmware. The out-of-band XML path is part of remote platform configuration, so it is reachable in the management workflows operators actually automate.
Who can reach it
Privileged local access on the host.
What to do
Fixed in platform BIOS/UEFI firmware. That means an OEM release, a per-node drain, a flash and a cold reboot - and OEM availability commonly lags the Intel advisory by quarters on server boards. There is no microcode or OS-level shortcut for this class; budget it as a fleet-wide maintenance campaign, not a patch.
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.