CVE-2016-1895: Medium severity ibm network appliance data ontap vulnerability
Published Sep 1, 2017
·Updated
NetApp Data ONTAP before 8.2.5 and 8.3.x before 8.3.2P12 allow remote authenticated users to cause a denial of service via vectors related to unsafe user input string handling.
Affected Software
3 affected components
NetApp Data ONTAP<=8.2.4
NetApp Data ONTAP=8.3.2p12
NetApp Data ONTAP=9.0
Event History
Sep 1, 2017
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-1895?
CVE-2016-1895 is classified as a medium severity vulnerability due to the potential for denial of service.
2
How do I fix CVE-2016-1895?
To fix CVE-2016-1895, upgrade NetApp Data ONTAP to version 8.2.5 or 8.3.2P12 or later.
3
Who is affected by CVE-2016-1895?
CVE-2016-1895 affects remote authenticated users of NetApp Data ONTAP versions before 8.2.5 and 8.3.x before 8.3.2P12.
4
What type of issues can CVE-2016-1895 cause?
CVE-2016-1895 can cause a denial of service due to unsafe handling of user input strings.
5
Is CVE-2016-1895 exploitable by unauthenticated users?
CVE-2016-1895 is only exploitable by authenticated users, making it a lower risk for unauthenticated threats.