CVE-2022-34425: High severity dell enterprise sonic os vulnerability
Dell Enterprise SONiC OS, 4.0.0, 4.0.1, contain a cryptographic key vulnerability in SSH. An unauthenticated remote attacker could potentially exploit this vulnerability, leading to unauthorized access to communication.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-34425?
CVE-2022-34425 is a cryptographic key vulnerability in SSH in Dell Enterprise SONiC OS 4.0.0 and 4.0.1.
How does CVE-2022-34425 affect Dell Enterprise SONiC OS?
CVE-2022-34425 can be exploited by an unauthenticated remote attacker to gain unauthorized access to communication in Dell Enterprise SONiC OS version 4.0.0 and 4.0.1.
What is the severity of CVE-2022-34425?
CVE-2022-34425 has a severity rating of 7.5 (High).
How can a remote attacker exploit CVE-2022-34425?
A remote attacker can exploit CVE-2022-34425 to gain unauthorized access to communication by exploiting the cryptographic key vulnerability in SSH.
Is there a security update available for CVE-2022-34425?
Yes, Dell has released a security update to address the cryptographic key vulnerability in SSH associated with CVE-2022-34425.