SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-85505

HIGH · CVSS 7.5 EPSS 0.34%

Source: NVD + CISA KEV + EPSS · Published 2026-09-04 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A stack-based buffer over-read vulnerability exists in the ipmi_oem component of FreeIPMI prior to version 1.6.19, triggered when a Baseboard Management Controller (BMC) returns a short response. This flaw could potentially lead to information disclosure, allowing attackers to read sensitive data from memory. Organizations utilizing FreeIPMI should prioritize patching to mitigate the risk associated with this high-severity vulnerability.

CVE
CVE-2026-85505
Severity
HIGH
CVSS
7.5
EPSS
0.34%

Original NVD Description

ipmi-oem in FreeIPMI before 1.6.19 has a stack-based buffer over-read in ipmi_oem_fujitsu_get_sel_entry_long_text in ipmi-oem/ipmi-oem-fujitsu.c when a BMC provides a short response, a different vulnerability than CVE-2026-50031 (which has different affected versions).