CVE-2023-24574

Severity CVSS v4.0:
Pending analysis
Type:
CWE-400 Uncontrolled Resource Consumption ('Resource Exhaustion')
Publication date:
02/02/2023
Last modified:
07/11/2023

Description

Dell Enterprise SONiC OS, 3.5.3, 4.0.0, 4.0.1, 4.0.2, contains an "Uncontrolled Resource Consumption vulnerability" in authentication component. An unauthenticated remote attacker could potentially exploit this vulnerability, leading to uncontrolled resource consumption by creating permanent home directories for unauthenticated users.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:dell:enterprise_sonic_distribution:*:*:*:*:*:*:*:* 3.5.3 (including) 4.0.3 (excluding)