CVE-2026-22281: Race Condition
Dell PowerScale OneFS, versions 9.5.0.0 through 9.5.1.5, versions 9.6.0.0 through 9.7.1.10, versions 9.8.0.0 through 9.10.1.3, versions starting from 9.11.0.0 and prior to 9.13.0.0, contains a Time-of-check Time-of-use (TOCTOU) race condition vulnerability. A low privileged attacker with adjacent network access could potentially exploit this vulnerability, leading to denial of service.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-22281?
CVE-2026-22281 has a low severity rating due to the nature of the Time-of-check Time-of-use (TOCTOU) race condition.
How do I fix CVE-2026-22281?
To fix CVE-2026-22281, update your Dell PowerScale OneFS to the latest version that is not affected by this vulnerability.
Which versions of Dell PowerScale OneFS are impacted by CVE-2026-22281?
Dell PowerScale OneFS versions 9.5.0.0 through 9.5.1.5, 9.6.0.0 through 9.7.1.10, and 9.8.0.0 through 9.10.1.3 are affected by CVE-2026-22281.
Who can exploit CVE-2026-22281?
A low privileged attacker with adjacent network access can exploit CVE-2026-22281.
What is a Time-of-check Time-of-use (TOCTOU) vulnerability like CVE-2026-22281?
A Time-of-check Time-of-use (TOCTOU) vulnerability like CVE-2026-22281 occurs when there is a race condition between checking a condition and using a resource, potentially allowing unauthorized access.