CVE-2024-49602

Dell PowerScale OneFS Versions 8.2.2.x through 9.8.0.x contain an improper resource unlocking vulnerability. A remote low privileged attacker could potentially exploit this vulnerability, leading to denial of service.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:dell:powerscale_onefs:*:*:*:*:*:*:*:*
cpe:2.3:a:dell:powerscale_onefs:*:*:*:*:*:*:*:*
cpe:2.3:a:dell:powerscale_onefs:*:*:*:*:*:*:*:*
cpe:2.3:a:dell:powerscale_onefs:9.8.0.0:*:*:*:*:*:*:*

History

09 Jan 2025, 15:43

Type Values Removed Values Added
First Time Dell powerscale Onefs
Dell
CWE CWE-667
CPE cpe:2.3:a:dell:powerscale_onefs:*:*:*:*:*:*:*:*
cpe:2.3:a:dell:powerscale_onefs:9.8.0.0:*:*:*:*:*:*:*
Summary
  • (es) Las versiones 8.2.2.x a 9.8.0.x de Dell PowerScale OneFS contienen una vulnerabilidad de desbloqueo de recursos indebido. Un atacante remoto con pocos privilegios podría aprovechar esta vulnerabilidad, lo que provocaría una denegación de servicio.
References () https://www.dell.com/support/kbdoc/en-in/000256645/dsa-2024-453-security-update-for-dell-powerscale-onefs-multiple-security-vulnerabilities - () https://www.dell.com/support/kbdoc/en-in/000256645/dsa-2024-453-security-update-for-dell-powerscale-onefs-multiple-security-vulnerabilities - Vendor Advisory

09 Dec 2024, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-09 15:15

Updated : 2025-01-09 15:43


NVD link : CVE-2024-49602

Mitre link : CVE-2024-49602

CVE.ORG link : CVE-2024-49602


JSON object : View

Products Affected

dell

  • powerscale_onefs
CWE
CWE-765

Multiple Unlocks of a Critical Resource

CWE-667

Improper Locking