CVE-2022-33183Out-of-bounds Write in Fabric Operating System

Severity
8.8HIGHNVD
EPSS
0.7%
top 28.81%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 25
Latest updateJul 6

Description

A vulnerability in Brocade Fabric OS CLI before Brocade Fabric OS v9.1.0, 9.0.1e, 8.2.3c, 8.2.0cbn5, 7.4.2.j could allow a remote authenticated attacker to perform stack buffer overflow using in “firmwaredownload” and “diagshow” commands.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages2 packages

CVEListV5brocade/brocade_fabric_osBrocade Fabric OS versions before Brocade Fabric OS v9.1.0, 9.0.1e, 8.2.3c, 8.2.0cbn5, 7.4.2.j
NVDbroadcom/fabric_operating_system8.0.08.2.3c+2

🔴Vulnerability Details

2
GHSA
GHSA-52r6-x37j-435c: A vulnerability in Brocade Fabric OS CLI before Brocade Fabric OS v92023-07-06
CVEList
CVE-2022-33183: A vulnerability in Brocade Fabric OS CLI before Brocade Fabric OS v92022-10-25
CVE-2022-33183 — Out-of-bounds Write | cvebase