CVE-2024-29967: In Brocade SANnav before v2.31 and v2.3.0a, it was observed that Docker instances inside the appliance have insecure mount points
In Brocade SANnav before Brocade SANnav v2.31 and v2.3.0a, it was observed that Docker instances inside the appliance have insecure mount points, allowing reading and writing access to sensitive files. The vulnerability could allow a sudo privileged user on the host OS to read and write access to these files.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-29967?
CVE-2024-29967 is classified as a high severity vulnerability due to the potential for privilege escalation through insecure mount points in Docker instances.
How do I fix CVE-2024-29967?
To mitigate CVE-2024-29967, update Brocade SANnav to version 2.31 or later.
What are the potential impacts of CVE-2024-29967?
Exploitation of CVE-2024-29967 could allow an attacker with sudo privileges on the host OS to access sensitive files within the Brocade SANnav appliance.
Which versions of Brocade SANnav are affected by CVE-2024-29967?
CVE-2024-29967 affects all versions of Brocade SANnav prior to 2.31 and 2.3.0a.
Who is impacted by CVE-2024-29967?
Organizations using Brocade SANnav versions below 2.31 or 2.3.0a may be impacted by CVE-2024-29967.