GPU VulnDB

Database/Firmware, BMC & network fabric

Dell OMSA: local low-privileged user reads sensitive information beyond the agent's scope

CVSS 7.3CVE-2026-80356Firmware, BMC & network fabriccurated

Impact

A local low-privileged user on a node running OMSA can read information the agent should keep to itself, and Dell scores it with a scope change and high confidentiality impact - so what leaks is not confined to OMSA's own data. On a GPU host, anything OMSA holds about hardware management access is useful to an attacker who has a shell and wants the management plane next.

Who can reach it

Local shell on a managed node with any low-privileged account.

What to do

Upgrade OMSA to 11.1.0.3 or later and restart the OMSA services. If the leaked material turns out to include management credentials on your nodes, rotate them after patching; Dell's advisory does not say what is exposed.

References

Related entries

All Firmware, BMC & network fabric entries

This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.