PT-2024-19145 · Netapp · Storagegrid

Published

2024-11-08

·

Updated

2024-11-12

·

CVE-2024-21994

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions StorageGRID (formerly StorageGRID Webscale) versions prior to 11.9
Description The issue is a Denial of Service (DoS) vulnerability that can be exploited by an authenticated attacker, potentially leading to a service crash.
Recommendations For versions prior to 11.9, update to version 11.9 or later to resolve the issue. As a temporary workaround, consider restricting access to the service to minimize the risk of exploitation by authenticated attackers.

Fix

Allocation of Resources Without Limits

Weakness Enumeration

Related Identifiers

CVE-2024-21994

Affected Products

Storagegrid