CVE Feed

    Dashboard / CVE / CVE-2022-29494

    CVE-2022-29494

    Improper input validation in firmware for OpenBMC in some Intel(R) platforms before versions egs-0.91-179 and bhs-04-45 may allow an authenticated user to potentially enable denial of service via network access.

    Published:Feb 16, 2023
    Last Modified:Jan 27, 2025
    EPS:Feb 16, 2023
    EPSS Score:0.00121
    CVSS Score:6.5

    Affected Products

    Vendor
    Intel
    Product
    C621a
    Vendor
    Intel
    Product
    C627a
    Vendor
    Intel
    Product
    C629a
    Vendor
    Intel
    Product
    C741
    Vendor
    Intel
    Product
    Openbmc
    Vendor
    Intel
    Product
    Xeon Gold 5315y
    Vendor
    Intel
    Product
    Xeon Gold 5317
    Vendor
    Intel
    Product
    Xeon Gold 5318h
    Vendor
    Intel
    Product
    Xeon Gold 5318n
    Vendor
    Intel
    Product
    Xeon Gold 5318s
    Vendor
    Intel
    Product
    Xeon Gold 5318y
    Vendor
    Intel
    Product
    Xeon Gold 5320
    Vendor
    Intel
    Product
    Xeon Gold 5320h
    Vendor
    Intel
    Product
    Xeon Gold 5320t
    Vendor
    Intel
    Product
    Xeon Gold 6312u
    Vendor
    Intel
    Product
    Xeon Gold 6314u
    Vendor
    Intel
    Product
    Xeon Gold 6326
    Vendor
    Intel
    Product
    Xeon Gold 6328h
    Vendor
    Intel
    Product
    Xeon Gold 6328hl
    Vendor
    Intel
    Product
    Xeon Gold 6330
    Vendor
    Intel
    Product
    Xeon Gold 6330h
    Vendor
    Intel
    Product
    Xeon Gold 6330n
    Vendor
    Intel
    Product
    Xeon Gold 6334
    Vendor
    Intel
    Product
    Xeon Gold 6336y
    Vendor
    Intel
    Product
    Xeon Gold 6338
    Vendor
    Intel
    Product
    Xeon Gold 6338n
    Vendor
    Intel
    Product
    Xeon Gold 6338t
    Vendor
    Intel
    Product
    Xeon Gold 6342
    Vendor
    Intel
    Product
    Xeon Gold 6346
    Vendor
    Intel
    Product
    Xeon Gold 6348
    Vendor
    Intel
    Product
    Xeon Gold 6348h
    Vendor
    Intel
    Product
    Xeon Gold 6354
    Vendor
    Intel
    Product
    Xeon Platinum 8351n
    Vendor
    Intel
    Product
    Xeon Platinum 8352m
    Vendor
    Intel
    Product
    Xeon Platinum 8352s
    Vendor
    Intel
    Product
    Xeon Platinum 8352v
    Vendor
    Intel
    Product
    Xeon Platinum 8352y
    Vendor
    Intel
    Product
    Xeon Platinum 8353h
    Vendor
    Intel
    Product
    Xeon Platinum 8354h
    Vendor
    Intel
    Product
    Xeon Platinum 8356h
    Vendor
    Intel
    Product
    Xeon Platinum 8358
    Vendor
    Intel
    Product
    Xeon Platinum 8358p
    Vendor
    Intel
    Product
    Xeon Platinum 8360h
    Vendor
    Intel
    Product
    Xeon Platinum 8360hl
    Vendor
    Intel
    Product
    Xeon Platinum 8360y
    Vendor
    Intel
    Product
    Xeon Platinum 8362
    Vendor
    Intel
    Product
    Xeon Platinum 8368
    Vendor
    Intel
    Product
    Xeon Platinum 8368q
    Vendor
    Intel
    Product
    Xeon Platinum 8376h
    Vendor
    Intel
    Product
    Xeon Platinum 8376hl
    Vendor
    Intel
    Product
    Xeon Platinum 8380
    Vendor
    Intel
    Product
    Xeon Platinum 8380h
    Vendor
    Intel
    Product
    Xeon Platinum 8380hl
    Vendor
    Intel
    Product
    Xeon Silver 4309y
    Vendor
    Intel
    Product
    Xeon Silver 4310
    Vendor
    Intel
    Product
    Xeon Silver 4310t
    Vendor
    Intel
    Product
    Xeon Silver 4314
    Vendor
    Intel
    Product
    Xeon Silver 4316

    Exploits

    No exploit reference

    Common Weakness Enumeration

    Common Attack Pattern Enumeration and Classification (CAPEC)

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High