Database/Control plane, storage & DevOps
OpenZFS: Block-cloning path can replace file contents with zero bytes, potentially disabling security mechanisms
CVSS 7.5CVE-2023-49298Control plane, storage & DevOpscurated
Impact
Block-cloning path can replace file contents with zero bytes, potentially disabling security mechanisms
Who can reach it
Network (remote)
What to do
Data-plane: module upgrade, node drain + reboot; scrub and verify datasets
References
Related entries
- Slurm (NULL pointer dereference in RPC handling): A crafted message crashes the Slurm daemon. On slurmctld that stallsCVE-2023-49936 · Slurm (NULL pointer dereference in RPC handling)High
- HPE OneView (clusterService authentication bypass to DoS): Authentication bypass against the OneView cluster serviceCVE-2023-50275 · HPE OneView (clusterService authentication bypass to DoS)High
- CyberPower PowerPanel Business 4.11.0 - Service Watchdog on TCP/2003: An unauthenticated attacker can repeatedlyCVE-2024-11322 · CyberPower PowerPanel Business 4.11.0 - Service Watchdog on TCP/2003High
- OpenVPN: The interactive service pipe is reachable remotelyCVE-2024-24974 · OpenVPNHigh
- Intel Neural Compressor: Unauthenticated input-validation failure leading to escalation of privilege in NeuralCVE-2024-28028 · Intel Neural CompressorHigh
- Brocade SANnav OVA appliance image, before v2.3.1 and v2.3.0a: Three defects that together mean every SANnav OVACVE-2024-29966 · Brocade SANnav OVA appliance image, before v2.3.1 and v2.3.0aHigh
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.