PT-2024-19137 · Netapp · Storagegrid

Published

2024-02-16

·

Updated

2024-12-13

·

CVE-2024-21983

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8
Description The issue is a Denial of Service (DoS) vulnerability. Successful exploit by an authenticated attacker could lead to an out of memory condition or node reboot.
Recommendations For versions prior to 11.8, update to version 11.8 or later to resolve the issue. As a temporary workaround, consider restricting access to the system to minimize the risk of exploitation by authenticated attackers.

Fix

Weakness Enumeration

Related Identifiers

CVE-2024-21983

Affected Products

Storagegrid