Start a Conversation

Solved!

Go to Solution

1 Rookie

 • 

44 Posts

30

September 1st, 2025 11:26

Vulnerability Dectected Idrac 9

Hi Team

We are receiving critical vulnerabilities (CVE-2024-25943) related SSH version in Idracs 9 that already are in the last firmware version. ( 7.00.00.181, 7.20.30.55) seems the only way to fix this is upgrading SSH version to 10.0 , bus as I said all iDRACs have the last version, Do you know if there's anything that we can do to fix that, or is it a false positive? Any recomnedation from DELL

Thanks in Advance

Moderator

 • 

3.9K Posts

September 2nd, 2025 00:24

Hi,

 

Based on the article that engineering has issues, the firmware version of 7.00.00.172 has fixes for the CVE-2024-25943. If the scans that you are using still receiving prompts since you are on 7.00.00.181, I would suggest contact support to raise a ticket to check with engineering.

 

Ref: https://www.dell.com/support/kbdoc/en-us/000226503/dsa-2024-099-security-update-for-dell-idrac9-ipmi-session-vulnerability

No Events found!

Top