GPU VulnDB

Database/Firmware, BMC & network fabric

Dell SmartFabric OS10 before 10.6.1.3: code downloaded without integrity check allows code execution

CVSS 9.1CVE-2026-63696Firmware, BMC & network fabriccurated

Impact

OS10 downloads code without verifying its integrity, so a high-privileged remote attacker - or anyone who can tamper with the download path the switch trusts - gets code execution on the switch, with a scope change in Dell's 9.1 vector meaning the impact reaches beyond the vulnerable component. Code running on a switch sits below every tenant boundary above it: it can mirror or redirect fabric traffic and it persists across configuration changes. The realistic path for a GPU operator is an image or package pulled during an upgrade or ZTP run; unverified code there means a compromised image server or an on-path attacker turns a routine upgrade into a fabric implant. The record does not name which download path is affected.

Who can reach it

Remote with high privileges on the switch, or an on-path position over the unverified download the switch performs. Effectively the management VLAN plus administrative access or control of the image source.

What to do

Upgrade to OS10 10.6.1.3 or later per Dell advisory DSA-2026-343 - a switch reload, so drain or fail over the rack's uplink first. Meanwhile serve switch images only from a trusted, access-controlled host over an authenticated channel, verify hashes out of band before an upgrade, and keep administrative access to OS10 limited to a jump host.

References

Related entries

All Firmware, BMC & network fabric entries

This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.