CVE-2023-45084

An issue exists in SoftIron HyperCloud where drive caddy removal and reinsertion without a reboot may erroneously cause the system to recognize the caddy as new media and wipe all data on the drives due to a missing synchronization flaw, which impacts data availability and integrity. This issue only impacts SoftIron HyperCloud "density" storage nodes running HyperCloud software versions 1.0 to before 2.0.3.
References
Link Resource
https://advisories.softiron.cloud Release Notes
Configurations

Configuration 1 (hide)

cpe:2.3:a:softiron:hypercloud:*:*:*:*:*:*:*:*

History

12 Dec 2023, 16:41

Type Values Removed Values Added
First Time Softiron
Softiron hypercloud
CWE CWE-662
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.1
CPE cpe:2.3:a:softiron:hypercloud:*:*:*:*:*:*:*:*
References () https://advisories.softiron.cloud - () https://advisories.softiron.cloud - Release Notes

05 Dec 2023, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-12-05 17:15

Updated : 2024-02-28 20:54


NVD link : CVE-2023-45084

Mitre link : CVE-2023-45084

CVE.ORG link : CVE-2023-45084


JSON object : View

Products Affected

softiron

  • hypercloud
CWE
CWE-662

Improper Synchronization

CWE-820

Missing Synchronization