CVE-2021-36282
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
16/08/2021
Last modified:
03/05/2022
Description
Dell EMC PowerScale OneFS versions 8.2.x - 9.1.0.x contain a use of uninitialized resource vulnerability. This can potentially allow an authenticated user with ISI_PRIV_LOGIN_CONSOLE or ISI_PRIV_LOGIN_SSH privileges to gain access up to 24 bytes of data within the /ifs kernel stack under certain conditions.
Impact
Base Score 3.x
3.30
Severity 3.x
LOW
Base Score 2.0
2.10
Severity 2.0
LOW
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:dell:emc_powerscale_onefs:*:*:*:*:*:*:*:* | 9.0.0.0 (including) | 9.2.0 (excluding) |
| cpe:2.3:o:dell:emc_powerscale_onefs:8.2.2:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



