DSA-2024-417: Security Update for Dell PowerScale OneFS for Security Vulnerability
Summary: Dell PowerScale OneFS remediation is available for security vulnerability that could be exploited by malicious users to compromise the affected system.
Impact
Medium
Details
| Proprietary Code CVEs |
Description |
CVSS Base Score |
CVSS Vector String |
|---|---|---|---|
| CVE-2024-47475 |
Dell PowerScale OneFS 8.2.2.x through 9.8.0.x contains an incorrect permission assignment for critical resource vulnerability. A locally authenticated attacker could potentially exploit this vulnerability, leading to denial of service. |
5.0 |
| Proprietary Code CVEs |
Description |
CVSS Base Score |
CVSS Vector String |
|---|---|---|---|
| CVE-2024-47475 |
Dell PowerScale OneFS 8.2.2.x through 9.8.0.x contains an incorrect permission assignment for critical resource vulnerability. A locally authenticated attacker could potentially exploit this vulnerability, leading to denial of service. |
5.0 |
Affected Products & Remediation
| CVEs Addressed |
Product |
Affected Versions |
Remediated Versions |
Link |
|---|---|---|---|---|
| CVE-2024-47475 |
PowerScale OneFS |
Versions 8.2.2.x through 9.4.0.19 |
Versions 9.4.0.20 or later |
|
| CVE-2024-47475 |
PowerScale OneFS |
Versions 8.2.2.x through 9.5.0.8 |
Versions 9.5.1.1 or later |
|
| CVE-2024-47475 |
PowerScale OneFS |
Versions 8.2.2.x through 9.7.0.3 |
Versions 9.7.1.2 or later |
|
| CVE-2024-47475 |
PowerScale OneFS |
Versions 9.8.0.0 through 9.8.0.2 |
Versions 9.9.0.0 or later |
| CVEs Addressed |
Product |
Affected Versions |
Remediated Versions |
Link |
|---|---|---|---|---|
| CVE-2024-47475 |
PowerScale OneFS |
Versions 8.2.2.x through 9.4.0.19 |
Versions 9.4.0.20 or later |
|
| CVE-2024-47475 |
PowerScale OneFS |
Versions 8.2.2.x through 9.5.0.8 |
Versions 9.5.1.1 or later |
|
| CVE-2024-47475 |
PowerScale OneFS |
Versions 8.2.2.x through 9.7.0.3 |
Versions 9.7.1.2 or later |
|
| CVE-2024-47475 |
PowerScale OneFS |
Versions 9.8.0.0 through 9.8.0.2 |
Versions 9.9.0.0 or later |
- Any version not listed in the Affected Products and Remediation section should upgrade PowerScale OneFS to a version 9.7.1.2 or later.
- We encourage all customers to adopt the Long Term Support (LTS) 2024 version which is 9.7.x code line, with the latest maintenance MR 9.7.1.2.
- For more information on LTS code lines, see Dell Infrastructure Solutions Group (ISG) LTS Release Support Customer Summary
Revision History
|
Revision |
Date |
Description |
|---|---|---|
|
1.0 |
2024-10-30 |
Initial Release |
|
2.0 |
2024-10-31 |
Updated for enhanced presentation with no changes to content |