First published: Mon Aug 05 2019(Updated: )
SMB in Data ONTAP operating in 7-Mode versions prior to 8.2.5P3 has weak cryptography which when exploited could lead to information disclosure or addition or modification of data.
Credit: security-alert@netapp.com
Affected Software | Affected Version | How to fix |
---|---|---|
NetApp Data ONTAP | <8.2.5 | |
NetApp Data ONTAP | =8.2.5-p1 | |
NetApp Data ONTAP | =8.2.5-p2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-5502 is a vulnerability in SMB in Data ONTAP operating in 7-Mode versions prior to 8.2.5P3 that has weak cryptography.
The severity of CVE-2019-5502 is critical with a CVSS score of 9.1.
CVE-2019-5502 can be exploited to lead to information disclosure or addition or modification of data.
Versions prior to 8.2.5P3 of Data ONTAP operating in 7-Mode are affected by CVE-2019-5502.
To fix CVE-2019-5502, update Data ONTAP to version 8.2.5P3 or higher.