PT-2023-13476 · Sandisk+1 · Sandisk Ibi+1

Published

2023-05-10

·

Updated

2023-05-18

·

CVE-2022-36329

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Western Digital My Cloud Home versions prior to 9.4.0-191 Western Digital My Cloud Home Duo versions prior to 9.4.0-191 SanDisk ibi versions prior to 9.4.0-191
Description An improper privilege management issue could allow an attacker to cause a denial of service over the OTA mechanism in Western Digital My Cloud Home, My Cloud Home Duo, and SanDisk ibi devices.
Recommendations For Western Digital My Cloud Home versions prior to 9.4.0-191, update to version 9.4.0-191 or later. For Western Digital My Cloud Home Duo versions prior to 9.4.0-191, update to version 9.4.0-191 or later. For SanDisk ibi versions prior to 9.4.0-191, update to version 9.4.0-191 or later.

Fix

Resource Exhaustion

Weakness Enumeration

Related Identifiers

CVE-2022-36329

Affected Products

Sandisk Ibi
Western Digital My Cloud Home