CVE-2022-34378: Path Traversal
Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.20, 9.2.1.13, 9.3.0.6, and 9.4.0.3, contain a relative path traversal vulnerability. A low privileged local attacker could potentially exploit this vulnerability, leading to denial of service.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2022-34378.
What is the severity of CVE-2022-34378?
The severity of CVE-2022-34378 is medium, with a severity value of 5.5.
Which versions of Dell PowerScale OneFS are affected by CVE-2022-34378?
Dell PowerScale OneFS versions 9.0.0 up to and including 9.1.0.20, 9.2.1.13, 9.3.0.6, and 9.4.0.3 are affected by CVE-2022-34378.
What is the impact of CVE-2022-34378?
CVE-2022-34378 can lead to denial of service if exploited by a low privileged local attacker.
Is there a security update available for CVE-2022-34378?
Yes, a security update is available for CVE-2022-34378. Please refer to the Dell PowerScale OneFS security update for more information: https://www.dell.com/support/kbdoc/en-us/000202171/dsa-2022-172-dell-powerscale-onefs-security-update-for-multiple-vulnerabilities