CVE-2025-30101

Dell PowerScale OneFS, versions 9.8.0.0 through 9.10.1.0, contain a time-of-check time-of-use (TOCTOU) race condition vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to denial of service and information tampering.
Configurations

Configuration 1 (hide)

cpe:2.3:o:dell:powerscale_onefs:*:*:*:*:*:*:*:*

History

16 May 2025, 15:38

Type Values Removed Values Added
CPE cpe:2.3:o:dell:powerscale_onefs:*:*:*:*:*:*:*:*
References () https://www.dell.com/support/kbdoc/en-us/000317419/dsa-2025-192-security-update-for-dell-powerscale-onefs-for-multiple-security-vulnerabilities - () https://www.dell.com/support/kbdoc/en-us/000317419/dsa-2025-192-security-update-for-dell-powerscale-onefs-for-multiple-security-vulnerabilities - Vendor Advisory
First Time Dell
Dell powerscale Onefs

12 May 2025, 17:32

Type Values Removed Values Added
Summary
  • (es) Dell PowerScale OneFS, versiones 9.8.0.0 a 9.10.1.0, contiene una vulnerabilidad de condición de ejecución de tiempo de comprobación y tiempo de uso (TOCTOU). Un atacante no autenticado con acceso local podría explotar esta vulnerabilidad, lo que provocaría una denegación de servicio y la manipulación de la información.

08 May 2025, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-08 18:15

Updated : 2025-05-16 15:38


NVD link : CVE-2025-30101

Mitre link : CVE-2025-30101

CVE.ORG link : CVE-2025-30101


JSON object : View

Products Affected

dell

  • powerscale_onefs
CWE
CWE-367

Time-of-check Time-of-use (TOCTOU) Race Condition