CVE-2025-0052: FlashBlade DOS Vulnerability
Published Jun 10, 2025
·Updated
Improper input validation performed during the authentication process of FlashBlade could lead to a system Denial of Service.
Affected Software
1 affected component
Pure Storage FlashBlade
Remediation
Information
CVE-2025-0052 is resolved in the following FlashBlade //Purity versions: * Purity//FB 4.3.13 or later
* Purity//FB 4.4.7 or later
* Purity//FB 4.5.3 or later
or
apply security-patch-fb-2025-A
Event History
Jun 10, 2025
CVE Published
via MITRE·05:39 PM
Data Sourced
via MITRE·05:39 PM
RemedyDescriptionWeakness
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-0052?
CVE-2025-0052 is classified as a high severity vulnerability due to its potential to cause a Denial of Service.
2
What kind of impact does CVE-2025-0052 have on Pure Storage FlashBlade?
CVE-2025-0052 can result in a Denial of Service, making the system unavailable to users.
3
How do I fix CVE-2025-0052?
To mitigate CVE-2025-0052, ensure you apply the latest security updates and patches provided by Pure Storage.
4
Is CVE-2025-0052 related to input validation?
Yes, CVE-2025-0052 involves improper input validation during the authentication process.
5
Does CVE-2025-0052 affect all versions of Pure Storage FlashBlade?
CVE-2025-0052 affects specific versions of Pure Storage FlashBlade, so it’s important to check the vendor's advisories for affected versions.