QID 38859

Date Published: 2022-02-11

QID 38859: NetApp Clustered Data Open Network Technology for Appliance Products (ONTAP) Denial of Service (DoS) Vulnerability (NTAP-20210303-0002)

NetApp Data ONTAP is a data management software which allows unifying storage infrastructures across flash, disk, and cloud.

Clustered Data ONTAP versions are susceptible to a vulnerability which discloses sensitive information to an unauthorized user.

Affected Versions:
Clustered Data ONTAP versions prior to 9.3P21, 9.5P16, 9.6P12, 9.7P9 and 9.8

Successful exploitation of this vulnerability could lead to Denial of Service (DoS) in SMB environments.

  • CVSS V3 rated as High - 6.5 severity.
  • CVSS V2 rated as Medium - 3.5 severity.
  • Solution

    Customers are advised to refer to NTAP-20210303-0002 for more information about patching this vulnerability.

    Vendor References

    CVEs related to QID 38859

    Software Advisories
    Advisory ID Software Component Link
    NTAP-20210303-0002 URL Logo security.netapp.com/advisory/ntap-20210303-0002/