CVE-2020-15383: High severity broadcom fabric operating system vulnerability
Running security scans against the SAN switch can cause config and secnotify processes within the firmware before Brocade Fabric OS v9.0.0, v8.2.2d and v8.2.1e to consume all memory leading to denial of service impacts possibly including a switch panic.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-15383?
CVE-2020-15383 refers to a vulnerability in Brocade Fabric Operating System (FOS) versions before v9.0.0, v8.2.2d, and v8.2.1e, which can be exploited by running security scans against the SAN switch, causing the config and secnotify processes to consume all memory leading to denial of service impacts, including a switch panic.
How does CVE-2020-15383 affect the SAN switch?
CVE-2020-15383 can cause the config and secnotify processes within the firmware of Brocade Fabric OS to consume all memory, resulting in denial of service impacts and potentially causing a switch panic.
What is the severity of CVE-2020-15383?
CVE-2020-15383 has a severity of 7.5 (high).
Which versions of Brocade Fabric Operating System (FOS) are affected by CVE-2020-15383?
Brocade Fabric Operating System (FOS) versions before v9.0.0, v8.2.2d, and v8.2.1e are affected by CVE-2020-15383.
How can CVE-2020-15383 be mitigated?
To mitigate CVE-2020-15383, it is recommended to upgrade Brocade Fabric Operating System (FOS) to version v9.0.0 or higher.