CVE-2023-27317
CVSS V2 None
CVSS V3 None
Description
ONTAP 9 versions 9.12.1P8, 9.13.1P4, and 9.13.1P5 are susceptible to a
vulnerability which will cause all SAS-attached FIPS 140-2 drives to
become unlocked after a system reboot or power cycle or a single
SAS-attached FIPS 140-2 drive to become unlocked after reinsertion. This
could lead to disclosure of sensitive information to an attacker with
physical access to the unlocked drives.
Overview
- CVE ID
- CVE-2023-27317
- Assigner
- netapp
- Vulnerability Status
- PUBLISHED
- Published Version
- 2023-12-15T22:59:11.093Z
- Last Modified Date
- 2023-12-15T22:59:11.093Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://security.netapp.com/advisory/NTAP-20231215-0001/ |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2023-27317 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-27317 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-06-25 01:34:13 | Added to TrackCVE |