Loading...
Loading...
A potential security vulnerability has been identified in Hewlett Packard Enterprise OneView Software. This vulnerability may be exploited, allowing a remote unauthenticated user to perform remote code execution. For further information, refer toSecurity Bulletin hpesbgn04985en_us.Refer to the Resolution section below to determine if an HPE OneView Synergy Composer or HPE OneView virtual appliance may be exposed to potential compromise. There are two ways of detection mentioned below: one way through the HPE OneView User Interface and the other way through an appliance support dump which requires HPE Support interaction and analysis.
HPE OneView appliance versions 5.20 through 10.20 running as a virtual machine or as an HPE Synergy Composer or Synergy Composer 2 appliance.
HPE strongly recommends upgrading toHPE OneView 11.01or later or applying a hotfix to any versions earlier than HPE OneView version 10.20:HPE virtual appliance security hotfixHPE Synergy Composer security hotfixTo detect whether there is any potential vulnerability, perform one of the following options:Option 1.)For a quick search on recent activity, use the HPE OneView User Interface:Use the Diagnostic tool by navigating to Settings -> Diagnostics and click the View diagnostics tools page:Enter into ciDebug log filter the log pattern, "trm7" and click "View ciDebug log" button:Interpret the results.If a log pattern is not found, then it is safe to conclude the system has not been affected by CVE-2025-37164 recently.If a log pattern is found, then apply either the security hotfix listed below, or upgrade toHPE OneView 11.01or later.Visit HPE OneView virtual appliance security hotfix to download the virtual appliance security hotfix.ORVisit HPE Synergy Composer security hotfix to download the HPE Synergy Composer security hotfix.Option 2.)For complete analysis, use an appliance support dumpCollect appliance support dump by navigating through HPE OneView UI to create support dump, under Settings > Appliance > Actions > Create Support Dump.By default, "Enable support dump encryption" checkbox is enabled, uncheck it.Select Advanced (customize selection with help of authorized support representative) and select only ciDebug logs.Unpack the Support Dump:For HPE OneView virtual appliance support dump, unpack the support dump into a temporary directory using tar, unzip, 7zip or similar tools.For HPE Synergy support dump, unpack will create Active and Standby dumps. Further unpack these support dumps into two separate temporary directories using tar, unzip, 7zip or similar tools.Search for Specific Log Patterns:Locate the directory /appliance/ci/logs in the extracted support dump.Search all current and archived ciDebug.log* files under /appliance/ci/logs in support dump for "trm7".Interpret the results:If the log pattern is not found in any files, you can safely conclude the system has not been affected by CVE-2025-37164.If the log pattern is found, apply either security hotfix listed below or upgrade toHPE OneView 11.01or later.Visit HPE OneView virtual appliance security hotfix to download the virtual appliance security hotfix.ORVisit HPE Synergy Composer security hotfix to download the HPE Synergy Composer security hotfix.
Operating Systems Affected:Not Applicable
Click on a version to see all relevant bugs
Hewlett Packard Enterprise Integration
Learn more about where this data comes from
BugZero Plan
Streamline upgrades with automated vendor bug scrubs
BugZero Prevent
Wish you caught this bug sooner? Get proactive today.