Intelligent Platform Management Interface (IPMI) with firmware for Supermicro X9 …
Intelligent Platform Management Interface (IPMI) with firmware for Supermicro X9 generation motherboards before SMT_X9_317 and firmware for Supermicro X8 generation motherboards before SMT X8 312 contain harcoded private encryption keys for the (1) Lighttpd web server SSL interface and the (2) Dropbear SSH daemon.
References
- https://support.citrix.com/article/CTX216642 x_refsource_CONFIRM
- http://support.citrix.com/article/CTX216642 x_refsource_CONFIRM
- https://community.rapid7.com/community/metasploit/blog/2013/11/05/supermicro-ip… x_refsource_MISC
- https://exchange.xforce.ibmcloud.com/vulnerabilities/89044 x_refsource_MISC
- https://www.supermicro.com/products/nfo/files/IPMI/CVE_Update.pdf x_refsource_CONFIRM
- https://support.citrix.com/article/CTX216642 x_refsource_CONFIRM x_transferred
- http://support.citrix.com/article/CTX216642 x_refsource_CONFIRM x_transferred
- https://community.rapid7.com/community/metasploit/blog/2013/11/05/supermicro-ip… x_refsource_MISC x_transferred
- https://exchange.xforce.ibmcloud.com/vulnerabilities/89044 x_refsource_MISC x_transferred
- https://www.supermicro.com/products/nfo/files/IPMI/CVE_Update.pdf x_refsource_CONFIRM x_transferred
- https://support.citrix.com/article/CTX216642 x_refsource_CONFIRM
- http://support.citrix.com/article/CTX216642 x_refsource_CONFIRM
- https://community.rapid7.com/community/metasploit/blog/2013/11/05/supermicro-ip… x_refsource_MISC
- https://exchange.xforce.ibmcloud.com/vulnerabilities/89044 x_refsource_MISC
- https://www.supermicro.com/products/nfo/files/IPMI/CVE_Update.pdf x_refsource_CONFIRM
- https://www.supermicro.com/products/nfo/files/IPMI/CVE_Update.pdf x_refsource_CONFIRM x_transferred
- https://support.citrix.com/article/CTX216642 x_refsource_CONFIRM x_transferred
- http://support.citrix.com/article/CTX216642 x_refsource_CONFIRM x_transferred
- https://community.rapid7.com/community/metasploit/blog/2013/11/05/supermicro-ip… x_refsource_MISC x_transferred
- https://exchange.xforce.ibmcloud.com/vulnerabilities/89044 x_refsource_MISC x_transferred
Affected products
- ==before SMT_X9_317 and before SMT X8 312
Matching in nixpkgs
pkgs.ipmicfg
Supermicro IPMI configuration tool
pkgs.ripmime
Attachment extractor for MIME messages
pkgs.freeipmi
Implementation of the Intelligent Platform Management Interface
pkgs.ipmitool
Command-line interface to IPMI-enabled devices
-
nixos-unstable 1.8.19-unstable-2025-02-18
- nixpkgs-unstable 1.8.19-unstable-2025-02-18
- nixos-unstable-small 1.8.19-unstable-2025-02-18
-
nixos-25.11 1.8.19-unstable-2025-02-18
- nixos-25.11-small 1.8.19-unstable-2025-02-18
- nixpkgs-25.11-darwin 1.8.19-unstable-2025-02-18
pkgs.ipmiutil
Easy-to-use IPMI server management utility
pkgs.ipmiview
None
pkgs.openipmi
User-level library that provides a higher-level abstraction of IPMI and generic services
pkgs.kzipmix.x86_64-linux
Tool that aggressively optimizes the sizes of Zip archives
pkgs.prometheus-ipmi-exporter
IPMI exporter for Prometheus
pkgs.python312Packages.python-ipmi
Python IPMI Library
pkgs.python313Packages.python-ipmi
Python IPMI Library
pkgs.python314Packages.python-ipmi
Python IPMI Library
Package maintainers
-
@7c6f434c Michael Raskin <7c6f434c@mail.ru>
-
@fpletz Franz Pletz <fpletz@fnordicwalking.de>
-
@vlaci László Vaskó <laszlo.vasko@outlook.com>
-
@svanderburg Sander van der Burg <s.vanderburg@tudelft.nl>
-
@SuperSandro2000 Sandro Jäckel <sandro.jaeckel@gmail.com>
-
@astro Astro <astro@spaceboyz.net>
-
@gshipunov Grigory Shipunov <blame@oxapentane.com>
-
@arezvov Alexander Rezvov <alex@rezvov.ru>
-
@tanneberger Tassilo Tanneberger <revol-xut@protonmail.com>
-
@snaar Serguei Narojnyi <snaar@snaar.net>
-
@fabaff Fabian Affolter <mail@fabian-affolter.ch>