1 Rookie

 • 

46 Posts

54

September 1st, 2025 11:26

Vulnerability Dectected Idrac 9

Hi Team

We are receiving critical vulnerabilities (CVE-2024-25943) related SSH version in Idracs 9 that already are in the last firmware version. ( 7.00.00.181, 7.20.30.55) seems the only way to fix this is upgrading SSH version to 10.0 , bus as I said all iDRACs have the last version, Do you know if there's anything that we can do to fix that, or is it a false positive? Any recomnedation from DELL

Thanks in Advance

Moderator

 • 

4K Posts

September 2nd, 2025 00:24

Hi,

 

Based on the article that engineering has issues, the firmware version of 7.00.00.172 has fixes for the CVE-2024-25943. If the scans that you are using still receiving prompts since you are on 7.00.00.181, I would suggest contact support to raise a ticket to check with engineering.

 

Ref: https://www.dell.com/support/kbdoc/en-us/000226503/dsa-2024-099-security-update-for-dell-idrac9-ipmi-session-vulnerability

1 Rookie

 • 

46 Posts

September 18th, 2025 14:38

@DELL-Joey C​ 

Thank Joey 

No Events found!

Top