CRITICAL
Potential security vulnerabilities have been identified with HPE Nimble Storage systems in multi array group configurations
Published Nov 7, 2019
9.8
CRITICALCVSS 3.1
EPSS 1.46%
Description
Potential security vulnerabilities have been identified with HPE Nimble Storage systems in multi array group configurations. The vulnerabilities could be exploited by an attacker to gain elevated privileges on the array. The following NimbleOS versions, and all subsequent releases, contain a software fix for this vulnerability: 3.9.2.0, 4.5.5.0, 5.0.8.0 and 5.1.3.0.
Affected products
No data.
AND
OR
- ≥ 3.1.0.0 · ≤ 3.9.1.0
- ≥ 4.1.0.0 · ≤ 4.5.4.0
- ≥ 5.0.1.0 · ≤ 5.0.7.0
- ≥ 5.1.0.0 · ≤ 5.1.2.0
Running on/with
OR
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (0)
No CWE recorded.
References (1)
- https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03964en_us x_refsource_MISCVendor Advisory
| Link | Providers | Tags |
|---|---|---|
| https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03964en_us | x_refsource_MISCVendor Advisory |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner hpe
Published Nov 7, 2019
Updated Aug 4, 2024
Reserved May 13, 2019
Link CVE-2019-11996
CISA Vulnrichment
Updated n/a