CVE-2021-36305: Medium severity Dell EMC PowerScale OneFS vulnerability
Dell PowerScale OneFS contains an Unsynchronized Access to Shared Data in a Multithreaded Context in SMB CA handling. An authenticated user of SMB on a cluster with CA could potentially exploit this vulnerability, leading to a denial of service over SMB.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-36305?
CVE-2021-36305 has a high severity rating due to the potential for denial of service via SMB exploitation.
How do I fix CVE-2021-36305?
To fix CVE-2021-36305, update your Dell EMC PowerScale OneFS to the latest version recommended by Dell.
Who is affected by CVE-2021-36305?
Authenticated users accessing SMB on affected versions of Dell EMC PowerScale OneFS are vulnerable to CVE-2021-36305.
What versions are vulnerable to CVE-2021-36305?
CVE-2021-36305 affects specific versions of Dell EMC PowerScale OneFS, including 8.2.0, 8.2.1, 8.2.2, and 9.0.0.0 through 9.2.1.0.
Is CVE-2021-36305 a remote or local vulnerability?
CVE-2021-36305 is a local vulnerability that requires authenticated access to exploit.