BSA-2021-1496

Brocade Fabric OS

2 more products

21581

10 May 2021

10 May 2021

Closed

High

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H - 7.5

N/A

CVE-2020-15383

Summary

Security Advisory ID : BSA-2021-1496

Component : config and secnotify processes

Revision : 1.0

Running security scans against the SAN switch can cause config and secnotify processes within the firmware before Brocade Fabric OS v9.0.0, v8.2.2d and v8.2.1e to consume all memory leading to denial of service impacts possibly including a switch panic.

Affected Products

Brocade Fabric OS versions before v9.0.0, v8.2.2d, and v8.2.1e

Products Confirmed Not Vulnerable

No other Brocade Fibre Channel Products from Broadcom products are currently known to be affected by this vulnerability.

Solution

A security update has been provided in Brocade Fabric OS versions v9.0.0, v8.2.2d, and v8.2.1e

Credit

This issue was discovered through security testing.

Revision History

Version Change Date
1.0 Initial Publication May 10, 2021