cbcvebase.
CVE-2022-34438
published 2022-10-21

CVE-2022-34438: Dell PowerScale OneFS, versions 8.2.x-9.4.0.x, contain a privilege context switching error. A local authenticated malicious user with high privileges could…

medium6.7CVSS 3.1
AVLACLPRHUINSUCHIHAH
Dell PowerScale OneFS, versions 8.2.x-9.4.0.x, contain a privilege context switching error. A local authenticated malicious user with high privileges could potentially exploit this vulnerability, leading to full system compromise. This impacts compliance mode clusters.

Affected

5 ranges
VendorProductVersion rangeFixed in
dellemc_powerscale_onefs9.1.0.0 – 9.1.0.22
dellemc_powerscale_onefs9.2.1.0 – 9.2.1.15
dellemc_powerscale_onefs9.3.0.0 – 9.3.0.7
dellemc_powerscale_onefs9.4.0.0 – 9.4.0.5
dellpowerscale_onefs>= unspecified < 9.4.0.x9.4.0.x