First published: Tue Dec 05 2023(Updated: )
Dell OS10 Networking Switches running 10.5.2.x and above contain an Uncontrolled Resource Consumption (Denial of Service) vulnerability, when switches are configured with VLT and VRRP. A remote unauthenticated user can cause the network to be flooded leading to Denial of Service for actual network users. This is a high severity vulnerability as it allows an attacker to cause an outage of network. Dell recommends customers to upgrade at the earliest opportunity.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell SmartFabric OS10 | =10.5.5.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-39248 is classified as a Denial of Service vulnerability affecting Dell OS10 Networking Switches.
To mitigate CVE-2023-39248, upgrade the Dell OS10 Networking Switches to a version beyond 10.5.5.5 that addresses this vulnerability.
CVE-2023-39248 affects Dell OS10 Networking Switches running version 10.5.2.x and above configured with VLT and VRRP.
Yes, CVE-2023-39248 can be exploited by a remote unauthenticated user to cause a Denial of Service.
CVE-2023-39248 impacts switches configured with Virtual Link Trunking (VLT) and Virtual Router Redundancy Protocol (VRRP).