PT-2023-23317 · Brocade · Brocade Fabric Os

Published

2023-08-01

·

Updated

2024-09-18

·

CVE-2023-31429

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Brocade Fabric OS versions prior to 9.1.1c, 9.2.0
Description The issue arises when using various commands such as chassisdistribute, reboot, rasman, errmoduleshow, errfilterset, hassiscfgperrthreshold, supportshowcfgdisable, and supportshowcfgenable that can cause the content of shell interpreted variables to be printed in the terminal.
Recommendations For Brocade Fabric OS versions prior to 9.1.1c, 9.2.0, update to version 9.1.1c or 9.2.0 to resolve the issue. As a temporary workaround, consider restricting the use of the vulnerable commands until a patch is available.

Fix

Generation of Error Message Containing Sensitive Information

Command Injection

Weakness Enumeration

Related Identifiers

CVE-2023-31429

Affected Products

Brocade Fabric Os