CVE-2021-21565: Medium severity Dell PowerScale OneFS vulnerability
Dell PowerScale OneFS versions 9.1.0.3 and earlier contain a denial of service vulnerability. SmartConnect had an error condition that may be triggered to loop, using CPU and potentially preventing other SmartConnect DNS responses.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-21565?
CVE-2021-21565 is a vulnerability in Dell PowerScale OneFS versions 9.1.0.3 and earlier that can be exploited to cause a denial of service.
How does CVE-2021-21565 affect Dell PowerScale OneFS?
CVE-2021-21565 affects Dell PowerScale OneFS versions 9.1.0.3 and earlier by causing a denial of service by triggering a loop in SmartConnect.
What is the severity of CVE-2021-21565?
CVE-2021-21565 has a severity score of 5.3 (medium).
How can CVE-2021-21565 be exploited?
CVE-2021-21565 can be exploited by triggering a loop in SmartConnect, which uses CPU and potentially prevents other SmartConnect DNS responses.
Is there a fix for CVE-2021-21565?
Yes, Dell has released a fix for CVE-2021-21565. Please refer to the Dell support page for more information.