PT-2018-10284 · Dell Emc · Dell Emc Isilon Onefs+1

Honggang Ren

·

Published

2018-09-18

·

Updated

2019-10-09

·

CVE-2018-11071

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Dell EMC Isilon OneFS versions 7.1.1.x through 8.1.x prior to 8.1.2 Dell EMC IsilonSD Edge versions 8.0.0.x through 8.1.x prior to 8.1.2
Description The issue allows an unauthenticated remote attacker to potentially crash the isi drive d process by sending specially crafted input data to the affected system, which will then be restarted.
Recommendations For Dell EMC Isilon OneFS versions 7.1.1.x through 8.1.x prior to 8.1.2, update to version 8.1.2 or later. For Dell EMC IsilonSD Edge versions 8.0.0.x through 8.1.x prior to 8.1.2, update to version 8.1.2 or later.

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-11071

Affected Products

Dell Emc Isilon Onefs
Dell Emc Isilonsd Edge