First published: Thu Nov 03 2022(Updated: )
Insufficient Verification of Data Authenticity vulnerability in Hewlett Packard Enterprise HPE Nimble Storage Hybrid Flash Arrays and Nimble Storage Secondary Flash Arrays.
Credit: security-alert@hpe.com
Affected Software | Affected Version | How to fix |
---|---|---|
<5.2.1.900 | ||
=5.3.0.0 | ||
<5.2.1.900 | ||
=5.3.0.0 | ||
<5.2.1.900 | ||
=5.3.0.0 | ||
<5.2.1.900 | ||
=5.3.0.0 | ||
<5.2.1.900 | ||
=5.3.0.0 | ||
<5.2.1.900 | ||
=5.3.0.0 | ||
<5.2.1.900 | ||
=5.3.0.0 | ||
<5.2.1.900 | ||
=5.3.0.0 | ||
<5.2.1.900 | ||
=5.3.0.0 | ||
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2022-37928.
The severity of CVE-2022-37928 is high with a severity value of 6.5.
The affected software versions are HPE Nimble Storage Hybrid Flash Arrays and Nimble Storage Secondary Flash Arrays with the following versions: sf100_firmware up to exclusive version 5.2.1.900, sf100_firmware version 5.3.0.0, sf300_firmware up to exclusive version 5.2.1.900, sf300_firmware version 5.3.0.0, hf60c_firmware up to exclusive version 5.2.1.900, hf60c_firmware version 5.3.0.0, hf40c_firmware up to exclusive version 5.2.1.900, hf40c_firmware version 5.3.0.0, hf20_firmware up to exclusive version 5.2.1.900, hf20_firmware version 5.3.0.0, hf40_firmware up to exclusive version 5.2.1.900, hf40_firmware version 5.3.0.0, hf60_firmware up to exclusive version 5.2.1.900, hf60_firmware version 5.3.0.0, hf20h_firmware up to exclusive version 5.2.1.900, hf20h_firmware version 5.3.0.0, and hf20c_firmware up to exclusive version 5.2.1.900, hf20c_firmware version 5.3.0.0.
CVE-2022-37928 is classified as high severity with a severity value of 6.5.
To mitigate CVE-2022-37928, it is recommended to apply the necessary security patches provided by Hewlett Packard Enterprise (HPE). Please refer to the HPE support page for more information: https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst04359en_us