Low Severity

Vulnerability involving IBM Cloud Baseboard Management Controller (BMC) Firmware

Share this post:

Summary:
The Baseboard Management Controller (BMC) is a third-party component designed to enable remote management of a server for initial provisioning, operating system reinstall and troubleshooting. As part of IBM Cloud’s Bare Metal Server offering, clients have access to the BMC.

Vulnerability Details:
On some system models offered by IBM Cloud and other cloud providers, a malicious attacker with access to the provisioned system could overwrite the firmware of the BMC. The system could then be returned to the hardware pool, where the compromised BMC firmware could then be used to attack the next user of the system.

The BMC has limited processing power and memory, which makes these types of attacks difficult. IBM has found no indication that this vulnerability has been exploited for malicious purposes. In addition, all clients of IBM Cloud receive a private network for their BMCs, separate from the private networks containing other clients’ BMCs and unprovisioned BMCs.

Remediation/Fixes:
IBM has responded to this vulnerability by forcing all BMCs, including those that are already reporting up-to-date firmware, to be reflashed with factory firmware before they are re-provisioned to other customers. All logs in the BMC firmware are erased and all passwords to the BMC firmware are regenerated.

Workarounds and Mitigations:
None.

Related Information
IBM Secure Engineering Web Portal

 

Change History
25 February 2019:  Original version published

More Low Severity stories

IBM Security Bulletin: IBM Security Key Lifecycle Manager is affected by Cross-Site Request Forgery (CVE-2019-4515 )

Sep 20, 2019 9:02 am EDT | Medium Severity

IBM Security Key Lifecycle Manager is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. CVE(s): CVE-2019-4515 Affected product(s) and affected version(s): IBM Security Key Lifecycle Manager (SKLM) v3.0 – v3.0.0.2 on distributed platforms IBM Security Key Lifecycle Manager (SKLM) ...read more


IBM Security Bulletin: Multiple vulnerabilities in Oracle Outside In Technology affect IBM Rational DOORS Next Generation

Sep 20, 2019 9:02 am EDT | High Severity

IBM Rational DOORS Next Generation® is affected by multiple vulnerabilities in the Oracle Outside In Technology® that is used as a component. CVE(s): CVE-2019-2756, CVE-2019-2855, CVE-2019-2852, CVE-2019-2764, CVE-2019-2792, CVE-2019-2759, CVE-2019-2835, CVE-2019-2854, CVE-2019-2853 Affected product(s) and affected version(s): Rational DOORS Next Generation 6.0.6.1 Previous versions are not affected. Refer to the following reference URLs for remediation ...read more


IBM Security Bulletin: Synthetic Playback Agent 8.1.4 is affected by multiple vulnerabilities

Sep 20, 2019 9:02 am EDT | High Severity

Synthetic Playback Agent has addressed the following vulnerabilities: CVE(s): CVE-2019-11710, CVE-2019-11721, CVE-2019-11711, CVE-2019-11730, CVE-2019-11720, CVE-2019-11714, CVE-2019-11725, CVE-2019-11715, CVE-2019-11712, CVE-2019-11723, CVE-2019-9811, CVE-2019-11713, CVE-2019-11724, CVE-2019-11718, CVE-2019-11729, CVE-2019-11719, CVE-2019-11716, CVE-2019-11727, CVE-2019-11717, CVE-2019-11728, CVE-2019-11709, CVE-2019-11710, CVE-2019-11721, CVE-2019-11711, CVE-2019-11730, CVE-2019-11720, CVE-2019-11714, CVE-2019-11725, CVE-2019-11715, CVE-2019-11712, CVE-2019-11723, CVE-2019-9811, CVE-2019-11713, CVE-2019-11724, CVE-2019-11718, CVE-2019-11729, CVE-2019-11719, CVE-2019-11716, CVE-2019-11727, CVE-2019-11717, CVE-2019-11728, CVE-2019-11709 Affected product(s) and affected ...read more