CVE-2017-8019: Input Validation
An issue was discovered in EMC ScaleIO 2.0.1.x. A vulnerability in message parsers (MDM, SDS, and LIA) could potentially allow an unauthenticated remote attacker to send specifically crafted packets to stop ScaleIO services and cause a denial of service situation.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-8019?
The severity of CVE-2017-8019 is high with a severity value of 7.5.
How does CVE-2017-8019 affect EMC ScaleIO?
CVE-2017-8019 affects EMC ScaleIO versions 2.0.1.0, 2.0.1.1, 2.0.1.2, and 2.0.1.3.
What is the vulnerability in CVE-2017-8019?
The vulnerability in CVE-2017-8019 is in the message parsers (MDM, SDS, and LIA) of EMC ScaleIO.
How can an unauthenticated remote attacker exploit CVE-2017-8019?
An unauthenticated remote attacker can exploit CVE-2017-8019 by sending specifically crafted packets to stop ScaleIO services and cause a denial of service.
Are there any references available for CVE-2017-8019?
Yes, the following references are available for CVE-2017-8019: http://seclists.org/fulldisclosure/2017/Nov/35, http://www.securityfocus.com/bid/101991