PT-2018-10284 · Dell Emc · Dell Emc Isilon Onefs+1
Honggang Ren
·
Published
2018-09-18
·
Updated
2019-10-09
·
CVE-2018-11071
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Dell EMC Isilon OneFS versions 7.1.1.x through 8.1.x prior to 8.1.2
Dell EMC IsilonSD Edge versions 8.0.0.x through 8.1.x prior to 8.1.2
Description
The issue allows an unauthenticated remote attacker to potentially crash the isi drive d process by sending specially crafted input data to the affected system, which will then be restarted.
Recommendations
For Dell EMC Isilon OneFS versions 7.1.1.x through 8.1.x prior to 8.1.2, update to version 8.1.2 or later.
For Dell EMC IsilonSD Edge versions 8.0.0.x through 8.1.x prior to 8.1.2, update to version 8.1.2 or later.
Fix
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Dell Emc Isilon Onefs
Dell Emc Isilonsd Edge