Database/Firmware, BMC & network fabric
Dell OMSA: remote stack overflow gives code execution to a high-privileged account
Impact
A separate memory-safety defect from the heap overflows in the same advisory: a remote attacker with a high-privileged OMSA account can smash a stack buffer and execute code in the privileged agent on the managed node. Same practical consequence as CVE-2026-81477 - administrative OMSA access converts to host code execution on the GPU node - but a different code path, so it is fixed and tracked separately.
Who can reach it
Network access to OMSA with a high-privileged (administrative) OMSA account.
What to do
Upgrade OMSA to 11.1.0.3 or later on all managed nodes and restart the OMSA services.
References
Related entries
- Intel CSME / Converged Security and Management Engine (mask ROM): A flaw in the CSME boot ROM window before memoryCVE-2019-0090 · Intel CSME / Converged Security and Management Engine (mask ROM)High
- Dell iDRAC9 (web interface, local file inclusion): A path-traversal / local-file-inclusion flaw lets a low-privilegeCVE-2020-5366 · Dell iDRAC9 (web interface, local file inclusion)High
- Dell iDRAC9: TOCTOU race during simultaneous web-interface access — state corruption on the BMCCVE-2021-21539 · Dell iDRAC9High
- AMD SEV-ES firmware - TMR placement in MMIO space: SEV-ES firmware does not verify that the Trusted Memory Region isCVE-2021-26332 · AMD SEV-ES firmware - TMR placement in MMIO spaceHigh
- AMD Secure Processor firmware - BIOS mailbox command bounds checking: Insufficient bounds checking while the ASPCVE-2021-26402 · AMD Secure Processor firmware - BIOS mailbox command bounds checkingHigh
- Arista EOS (service ACLs): Service ACL bypass for OpenConfig gNOI and RESTCONFCVE-2021-28507 · Arista EOS (service ACLs)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.