CVE-2024-25953: Medium severity Dell PowerScale OneFS vulnerability
Dell PowerScale OneFS versions 9.4.0.x through 9.7.0.x contains an UNIX symbolic link (symlink) following vulnerability. A local high privileged attacker could potentially exploit this vulnerability, leading to denial of service, information tampering.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-25953?
CVE-2024-25953 is classified as a high severity vulnerability due to the potential for denial of service and information tampering by a local high privileged attacker.
How do I fix CVE-2024-25953?
To mitigate CVE-2024-25953, update Dell PowerScale OneFS to the latest version that addresses this vulnerability.
What versions of Dell PowerScale OneFS are affected by CVE-2024-25953?
CVE-2024-25953 affects Dell PowerScale OneFS versions 9.4.0.x to 9.7.0.x.
Who can exploit CVE-2024-25953?
CVE-2024-25953 can be exploited by a local attacker with high privileges.
What kind of attacks can be executed using CVE-2024-25953?
Exploiting CVE-2024-25953 could lead to denial of service or information tampering.