CVE-2022-33184Out-of-bounds Write in Fabric Operating System

Severity
7.8HIGHNVD
EPSS
0.1%
top 81.42%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 25
Latest updateOct 26

Description

A vulnerability in fab_seg.c.h libraries of all Brocade Fabric OS versions before Brocade Fabric OS v9.1.1, v9.0.1e, v8.2.3c, v8.2.0_cbn5, 7.4.2j could allow local authenticated attackers to exploit stack-based buffer overflows and execute arbitrary code as the root user account.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages2 packages

CVEListV5brocade/brocade_fabric_osBrocade Fabric OS versions before Brocade Fabric OS v9.1.0, 9.0.1e, 8.2.3c, 8.2.0cbn5, 7.4.2.j
NVDbroadcom/fabric_operating_system8.0.08.2.3c+2

🔴Vulnerability Details

2
GHSA
GHSA-88q3-c9m5-9945: A vulnerability in fab_seg2022-10-26
CVEList
CVE-2022-33184: A vulnerability in fab_seg2022-10-25