CNNVD-202510-1970 Information

CNNVD ID

CNNVD-202510-1970

CVE-2025-37149

  • CNNVD Published: 2025-10-14

Description (Chinese)

HPE ProLiant RL300 Gen11 Server是美国HPE公司的一款基于ARM架构的服务器。 HPE ProLiant RL300 Gen11 Server存在安全漏洞,该漏洞源于UEFI固件存在越界读取。

Description (English)

HPE ProLiant RL300 Gen11 Server is a ARM-based server for HPE. HPE ProLiant RL300 Gen11 Server has a security loophole, which stems from the existence of cross-border access to UEFI solids.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

HPE

Published

2025-10-14

Last Modified

2026-02-24

References

https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbhf04952en_us&docLocale=en_US https://access.redhat.com/security/cve/cve-2025-37149 https://vigilance.fr/vulnerability/HPE-ProLiant-RL300-Gen11-Server-out-of-bounds-memory-reading-dated-14-10-2025-48463

Patch

https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbhf04952en_us&docLocale=en_US

Share on: