CVE-2026-26354: Buffer Overflow
Dell PowerProtect Data Domain with Domain Operating System (DD OS) of Feature Release versions 7.7.1.0 through 8.6, LTS2025 release version 8.3.1.0 through 8.3.1.10, LTS2024 release versions 7.13.1.0 through 7.13.1.60, contain a stack-based Buffer Overflow vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to arbitrary command execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-26354?
CVE-2026-26354 is classified as a critical severity vulnerability due to its potential for exploitation by unauthenticated attackers.
How do I fix CVE-2026-26354?
To mitigate CVE-2026-26354, users should update their Dell PowerProtect Data Domain systems to the latest supported version as recommended by Dell.
What are the affected versions for CVE-2026-26354?
CVE-2026-26354 affects Dell PowerProtect Data Domain versions from 7.7.1.0 to 8.6, 8.3.1.0 to 8.3.1.10, and 7.13.1.0 to 7.13.1.60.
What type of vulnerability is CVE-2026-26354?
CVE-2026-26354 is a stack-based buffer overflow vulnerability that can be exploited by attackers.
Who is affected by CVE-2026-26354?
Organizations using affected versions of Dell PowerProtect Data Domain with Domain Operating System software are at risk from CVE-2026-26354.