Database/AI/ML frameworks & serving
Pure Storage FlashArray authentication input validation: Malformed input during authentication takes the FlashArray
CVE-2025-0051AI/ML frameworks & servingcurated
Impact
Malformed input during authentication takes the FlashArray into a denial of service, before any credential is checked. Losing the array means every GPU node that mounts it loses its data path at once.
Who can reach it
Network reach to the FlashArray authentication surface. Pre-authentication, so no account is required.
What to do
Upgrade Purity//FA to the release named in Pure's security bulletin. Until patched, limit which networks can reach the array's login endpoints - this is reachable from anywhere the login prompt is.
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.