Database/Firmware, BMC & network fabric
Dell Enterprise SONiC OS (authentication component): Uncontrolled resource consumption in SONiC's authentication
Impact
Uncontrolled resource consumption in SONiC's authentication component, reachable by an unauthenticated remote attacker. Exhausting the authentication path is a good denial of service because it locks *you* out of the switch at the same time it stays up forwarding — you lose the ability to respond.
Who can reach it
Unauthenticated, remote to the switch management services on Enterprise SONiC 3.5.3, 4.0.0, 4.0.1, 4.0.2.
What to do
NOS image upgrade plus reboot. Interim: rate-limit and ACL the management interface so only your jump hosts can reach the authentication endpoints — a live config change that also preserves your own access.
References
Related entries
- AMI MegaRAC SPx (Redfish): Password disclosure through RedfishCVE-2023-25191 · AMI MegaRAC SPx (Redfish)High
- AMI MegaRAC SPx 12 (Service Location Protocol service): Every BMC running SLP is a free DDoS cannon pointedCVE-2023-29552 · AMI MegaRAC SPx 12 (Service Location Protocol service)High
- Supermicro BMC web server on X11 and M11 based boards with firmware up to 3.17.02: An unauthenticated attacker readsCVE-2023-33411 · Supermicro BMC web server on X11 and M11 based boards with firmware up to 3.17.02High
- Juniper Junos OS PFE on QFX10000 Series (VXLAN tunnel routing): A specific *valid* IP packet that needs to be routedCVE-2023-36835 · Juniper Junos OS PFE on QFX10000 Series (VXLAN tunnel routing)High
- UEFI image parsers, AMI AptioV: Unrestricted upload of a crafted BMP logo parsed by the BIOS at bootCVE-2023-39538 · UEFI image parsers, AMI AptioVHigh
- UEFI image parsers, AMI AptioV: Second LogoFAIL image-parser flaw in AMI AptioV BIOSCVE-2023-39539 · UEFI image parsers, AMI AptioVHigh
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.