PT-2023-13476 · Sandisk+1 · Sandisk Ibi+1
Published
2023-05-10
·
Updated
2023-05-18
·
CVE-2022-36329
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Western Digital My Cloud Home versions prior to 9.4.0-191
Western Digital My Cloud Home Duo versions prior to 9.4.0-191
SanDisk ibi versions prior to 9.4.0-191
Description
An improper privilege management issue could allow an attacker to cause a denial of service over the OTA mechanism in Western Digital My Cloud Home, My Cloud Home Duo, and SanDisk ibi devices.
Recommendations
For Western Digital My Cloud Home versions prior to 9.4.0-191, update to version 9.4.0-191 or later.
For Western Digital My Cloud Home Duo versions prior to 9.4.0-191, update to version 9.4.0-191 or later.
For SanDisk ibi versions prior to 9.4.0-191, update to version 9.4.0-191 or later.
Fix
Resource Exhaustion
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Sandisk Ibi
Western Digital My Cloud Home