1 Rookie
•
44 Posts
0
30
September 1st, 2025 11:26
Vulnerability Dectected Idrac 9
Hi Team
We are receiving critical vulnerabilities (CVE-2024-25943) related SSH version in Idracs 9 that already are in the last firmware version. ( 7.00.00.181, 7.20.30.55) seems the only way to fix this is upgrading SSH version to 10.0 , bus as I said all iDRACs have the last version, Do you know if there's anything that we can do to fix that, or is it a false positive? Any recomnedation from DELL
Thanks in Advance
No Events found!
DELL-Joey C
Moderator
•
3.9K Posts
0
September 2nd, 2025 00:24
Hi,
Based on the article that engineering has issues, the firmware version of 7.00.00.172 has fixes for the CVE-2024-25943. If the scans that you are using still receiving prompts since you are on 7.00.00.181, I would suggest contact support to raise a ticket to check with engineering.
Ref: https://www.dell.com/support/kbdoc/en-us/000226503/dsa-2024-099-security-update-for-dell-idrac9-ipmi-session-vulnerability