Content Library · Advisory

Advisory 2023

Browse 560 2023 NetApp advisory records in the NetApp Black Box content library. Page 3 of 5.

Library JSON API

Showing all 120 items on this page

Advisory

CVE-2023-29406 Golang Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230814-0002/

NetApp published this final advisory covering CVE-2023-29406; the API labels exploitation information as **Public**. The API currently lists affected products as: Astra Control Center - Cloud Insights Telegraf Agent; Astra Control Center - NetApp Kubernetes Monitoring Operator; Data Infrastructure Insights Telegraf Agent (formerly Cloud Insights Telegraf Agent); NetApp Kubernetes Monitoring Operator; Trident; Trident Autosupport.

Open source
Advisory

CVE-2023-28953 IBM Cognos Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230814-0001/

NetApp published this final advisory covering CVE-2023-28953; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2023-2878 Kubernetes Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230814-0003/

NetApp published this final advisory covering CVE-2023-2878; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2022-24834 Redis Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230814-0006/

NetApp published this final advisory covering CVE-2022-24834; the API labels exploitation information as **Public**. The API currently lists affected products as: Management Services for Element Software and NetApp HCI.

Open source
Advisory

CVE-2021-31294 Redis Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230814-0007/

NetApp published this final advisory covering CVE-2021-31294; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2022-40982 Intel Processor Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230811-0001/

NetApp published this interim advisory covering CVE-2022-40982; the API labels exploitation information as **Public**. The API currently lists affected products as: FAS/AFF BIOS - 2820; FAS/AFF BIOS - 8300/8700/A400/C400; FAS/AFF BIOS - A250/500f/C250; FAS/AFF BIOS - A320; FAS/AFF BIOS - A800/C800; FAS/AFF BIOS - A900/9500; NetApp HCI Compute Node (Bootstrap OS); NetApp HCI Compute Node BIOS.

Open source
Advisory

June 2023 Linux Kernel Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230803-0002/

NetApp published this final advisory covering CVE-2023-35823, CVE-2023-35824, CVE-2023-35826, CVE-2023-35828, CVE-2023-35829; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C; NetApp HCI Compute Node (Bootstrap OS).

Open source
Advisory

July 2023 Kubernetes Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230803-0004/

NetApp published this final advisory covering CVE-2023-2727, CVE-2023-2728; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

July 2023 IBM DB2 JDBC Driver Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230803-0006/

NetApp published this final advisory covering CVE-2023-27869, CVE-2023-27868, CVE-2023-27867; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2023-38408 OpenSSH Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230803-0010/

NetApp published this interim advisory covering CVE-2023-38408; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere; NetApp HCI Compute Node (Bootstrap OS); NetApp SolidFire & HCI Management Node; NetApp SolidFire & HCI Storage Node (Element Software); ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2023-35947 Gradle Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230803-0007/

NetApp published this final advisory covering CVE-2023-35947; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Compute Node (Bootstrap OS).

Open source
Advisory

CVE-2023-35827 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230803-0003/

NetApp published this final advisory covering CVE-2023-35827; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C; NetApp HCI Compute Node (Bootstrap OS).

Open source
Advisory

CVE-2023-34462 Apache Netty Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230803-0001/

NetApp published this final advisory covering CVE-2023-34462; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Linux; Active IQ Unified Manager for Microsoft Windows; Active IQ Unified Manager for VMware vSphere; OnCommand Workflow Automation.

Open source
Advisory

CVE-2023-3446 OpenSSL Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230803-0011/

NetApp published this interim advisory covering CVE-2023-3446; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Linux; Active IQ Unified Manager for VMware vSphere; Brocade Fabric Operating System Firmware; E-Series SANtricity OS Controller Software 11.x; FAS/AFF Baseboard Management Controller (BMC) - A250/500f/C250; FAS/AFF Baseboard Management Controller (BMC) - A320; FAS/AFF Baseboard Management Controller (BMC) - A800/C800; FAS/AFF Baseboard Management Controller (BMC) - A900/9500; FAS/AFF Baseboard Management Controller (BMC) - C190/A150/A220/FAS2720/FAS2750; FAS/AFF Baseboard Management Controller (BMC) - FAS2820; FAS/AFF Service Processor - A300/8200; FAS/AFF Service Processor - A700/9000; Management Services for Element Software and NetApp HCI; NetApp Cloud Backup OST Plug-in (formerly AltaVault OST Plug-in); NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C; NetApp HCI Baseboard Management Controller (BMC) - H610C; NetApp HCI Baseboard Management Controller (BMC) - H610S; NetApp HCI Baseboard Management Controller (BMC) - H615C; NetApp HCI Compute Node (Bootstrap OS); NetApp Manageability SDK; ONTAP Select Deploy administration utility; ONTAP tools for VMware vSphere 9; OnCommand Workflow Automation; SnapManager for Hyper-V.

Open source
Advisory

CVE-2023-34457 Python Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230803-0005/

NetApp published this final advisory covering CVE-2023-34457; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Compute Node (Bootstrap OS).

Open source
Advisory

CVE-2023-30586 Node.js Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230803-0008/

NetApp published this final advisory covering CVE-2023-30586; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

July 2023 Samba Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230731-0010/

NetApp published this final advisory covering CVE-2022-2127, CVE-2023-3347, CVE-2023-34966, CVE-2023-34967, CVE-2023-34968; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

July 2023 IBM DB2 Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230731-0007/

NetApp published this final advisory covering CVE-2023-23487, CVE-2023-29256, CVE-2023-30431, CVE-2023-30442, CVE-2023-30443, CVE-2023-30445, CVE-2023-30446, CVE-2023-30447, CVE-2023-30448, CVE-2023-30449; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

January 2023 MegaRAC BMC Firmware Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230731-0008/

NetApp published this final advisory covering CVE-2022-26872, CVE-2022-40258; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C; NetApp HCI Baseboard Management Controller (BMC) - H610C; NetApp HCI Baseboard Management Controller (BMC) - H610S; NetApp HCI Baseboard Management Controller (BMC) - H615C.

Open source
Advisory

CVE-2023-35946 Gradle Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230731-0003/

NetApp published this final advisory covering CVE-2023-35946; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Compute Node (Bootstrap OS).

Open source
Advisory

CVE-2023-3389 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230731-0001/

NetApp published this final advisory covering CVE-2023-3389; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C; NetApp HCI Compute Node (Bootstrap OS).

Open source
Advisory

CVE-2023-3312 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230731-0005/

NetApp published this interim advisory covering CVE-2023-3312; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C; NetApp HCI Compute Node (Bootstrap OS); NetApp SolidFire & HCI Management Node; NetApp SolidFire & HCI Storage Node (Element Software).

Open source
Advisory

CVE-2023-3090 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230731-0002/

NetApp published this final advisory covering CVE-2023-3090; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C; NetApp HCI Compute Node (Bootstrap OS).

Open source
Advisory

CVE-2023-2908 LibTIFF Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230731-0004/

NetApp published this final advisory covering CVE-2023-2908; the API labels exploitation information as **Public**. The API currently lists affected products as: ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2023-1295 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230731-0006/

NetApp published this final advisory covering CVE-2023-1295; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C; NetApp HCI Compute Node (Bootstrap OS).

Open source
Advisory

CVE-2015-20109 GNU C Library (glibc) Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230731-0009/

NetApp published this final advisory covering CVE-2015-20109; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C; NetApp HCI Baseboard Management Controller (BMC) - H610C; NetApp HCI Baseboard Management Controller (BMC) - H610S; NetApp HCI Baseboard Management Controller (BMC) - H615C; NetApp HCI Compute Node (Bootstrap OS).

Open source
Advisory

July 2023 MySQL Server Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230725-0005/

NetApp published this final advisory covering CVE-2022-4899, CVE-2023-0361, CVE-2023-21950, CVE-2023-22005, CVE-2023-22007, CVE-2023-22008, CVE-2023-22033, CVE-2023-22038, CVE-2023-22046, CVE-2023-22048, CVE-2023-22053, CVE-2023-22054, CVE-2023-22056, CVE-2023-22057, CVE-2023-22058; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Microsoft Windows; Active IQ Unified Manager for VMware vSphere; OnCommand Insight; OnCommand Workflow Automation; SnapCenter.

Open source
Advisory

July 2023 Java Platform Standard Edition Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230725-0006/

NetApp published this interim advisory covering CVE-2023-22006, CVE-2023-22036, CVE-2023-22041, CVE-2023-22043, CVE-2023-22044, CVE-2023-22045, CVE-2023-22049, CVE-2023-25193; the API labels exploitation information as **Public**. The API currently lists affected products as: 7-Mode Transition Tool; Active IQ Unified Manager for Microsoft Windows; Active IQ Unified Manager for VMware vSphere; Brocade SAN Navigator (SANnav); Data Infrastructure Insights Acquisition Unit (formerly Cloud Insights Acquisition Unit); Data Infrastructure Insights Storage Workload Security Agent (formerly Cloud Insights Storage Workload Security Agent); NetApp HCI Compute Node (Bootstrap OS); OnCommand Insight; OnCommand Workflow Automation.

Open source
Advisory

CVE-2023-36617 Ruby Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230725-0002/

NetApp published this final advisory covering CVE-2023-36617; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Compute Node (Bootstrap OS).

Open source
Advisory

CVE-2023-2975 OpenSSL Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230725-0004/

NetApp published this interim advisory covering CVE-2023-2975; the API labels exploitation information as **Public**. The API currently lists affected products as: FAS/AFF Baseboard Management Controller (BMC) - A250/500f/C250; Management Services for Element Software and NetApp HCI; NetApp Cloud Backup OST Plug-in (formerly AltaVault OST Plug-in); NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C; NetApp HCI Compute Node (Bootstrap OS); ONTAP Select Deploy administration utility; SnapManager for Hyper-V.

Open source
Advisory

CVE-2023-20867 VMware Tools Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230725-0001/

NetApp published this final advisory covering CVE-2023-20867; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2020-23064 jQuery Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230725-0003/

NetApp published this final advisory covering CVE-2020-23064; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Linux; Brocade SAN Navigator (SANnav); NetApp Cloud Backup OST Plug-in (formerly AltaVault OST Plug-in); NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C; NetApp Virtual Desktop Service (VDS); Spot PC.

Open source
Advisory

CVE-2023-35788 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230714-0002/

NetApp published this final advisory covering CVE-2023-35788; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C; NetApp HCI Compute Node (Bootstrap OS).

Open source
Advisory

CVE-2023-34981 Apache Tomcat Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230714-0003/

NetApp published this final advisory covering CVE-2023-34981; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2023-3326 FreeBSD Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230714-0005/

NetApp published this final advisory covering CVE-2023-3326; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2023-3128 Grafana Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230714-0004/

NetApp published this final advisory covering CVE-2023-3128; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2023-0045 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230714-0001/

NetApp published this interim advisory covering CVE-2023-0045; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere; NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C; NetApp HCI Compute Node (Bootstrap OS); NetApp SolidFire & HCI Management Node.

Open source
Advisory

June 2023 PostgreSQL Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230706-0006/

NetApp published this final advisory covering CVE-2023-2454, CVE-2023-2455; the API labels exploitation information as **Public**. The API currently lists affected products as: Brocade SAN Navigator (SANnav).

Open source
Advisory

June 2023 Grafana Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230706-0002/

NetApp published this final advisory covering CVE-2023-2801, CVE-2023-2183; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

June 2023 Apache Struts Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230706-0005/

NetApp published this final advisory covering CVE-2023-34149, CVE-2023-34396; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2023-3141 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230706-0004/

NetApp published this final advisory covering CVE-2023-3141; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C; NetApp HCI Compute Node (Bootstrap OS).

Open source
Advisory

CVE-2023-2700 Libvirt Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230706-0001/

NetApp published this final advisory covering CVE-2023-2700; the API labels exploitation information as **Public**. The API currently lists affected products as: ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2023-26965 LibTIFF Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230706-0009/

NetApp published this final advisory covering CVE-2023-26965; the API labels exploitation information as **Public**. The API currently lists affected products as: ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2022-3515 Libksba Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230706-0008/

NetApp published this final advisory covering CVE-2022-3515; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Compute Node (Bootstrap OS); NetApp SolidFire & HCI Management Node; NetApp SolidFire & HCI Storage Node (Element Software).

Open source
Advisory

CVE-2020-36732 Node.js Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230706-0003/

NetApp published this final advisory covering CVE-2020-36732; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2020-35525 SQLite Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230706-0007/

NetApp published this final advisory covering CVE-2020-35525; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Compute Node (Bootstrap OS); ONTAP Select Deploy administration utility.

Open source
Advisory

May 2023 Libtiff Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230703-0002/

NetApp published this final advisory covering CVE-2023-30775, CVE-2023-30774; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

June 2023 ISC BIND Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230703-0010/

NetApp published this interim advisory covering CVE-2023-2828, CVE-2023-2829, CVE-2023-2911; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere; NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C; NetApp HCI Compute Node (Bootstrap OS).

Open source
Advisory

CVE-2023-3111 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230703-0007/

NetApp published this final advisory covering CVE-2023-3111; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C.

Open source
Advisory

CVE-2023-2953 OpenLDAP Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230703-0005/

NetApp published this interim advisory covering CVE-2023-2953; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere; NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C; ONTAP 9; ONTAP tools for VMware vSphere 9.

Open source
Advisory

CVE-2023-2731 Libtiff Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230703-0009/

NetApp published this final advisory covering CVE-2023-2731; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2023-2650 OpenSSL Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230703-0001/

NetApp published this interim advisory covering CVE-2023-2650; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Linux; Active IQ Unified Manager for VMware vSphere; Brocade Fabric Operating System Firmware; FAS/AFF Baseboard Management Controller (BMC) - A250/500f/C250; FAS/AFF Baseboard Management Controller (BMC) - A320; FAS/AFF Baseboard Management Controller (BMC) - A800/C800; FAS/AFF Baseboard Management Controller (BMC) - A900/9500; FAS/AFF Baseboard Management Controller (BMC) - C190/A150/A220/FAS2720/FAS2750; FAS/AFF Baseboard Management Controller (BMC) - FAS2820; Management Services for Element Software and NetApp HCI; NetApp Cloud Backup OST Plug-in (formerly AltaVault OST Plug-in); NetApp Converged Systems Advisor Agent; NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C; NetApp HCI Compute Node (Bootstrap OS); NetApp Manageability SDK; NetApp SMI-S Provider; NetApp SolidFire & HCI Storage Node (Element Software); ONTAP 9; ONTAP Select Deploy administration utility; OnCommand Workflow Automation; SnapManager for Hyper-V.

Open source
Advisory

CVE-2023-2598 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230703-0006/

NetApp published this final advisory covering CVE-2023-2598; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C; NetApp HCI Compute Node (Bootstrap OS).

Open source
Advisory

CVE-2023-20883 Spring Boot Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230703-0008/

NetApp published this final advisory covering CVE-2023-20883; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2022-48502 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230703-0004/

NetApp published this final advisory covering CVE-2022-48502; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C; NetApp HCI Compute Node (Bootstrap OS).

Open source
Advisory

CVE-2015-20108 Ruby Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230703-0003/

NetApp published this final advisory covering CVE-2015-20108; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Compute Node (Bootstrap OS).

Open source
Advisory

May 2023 Node.js Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230622-0007/

NetApp published this final advisory covering CVE-2023-27563, CVE-2023-27564, CVE-2023-27562; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2023-33250 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230622-0006/

NetApp published this final advisory covering CVE-2023-33250; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C.

Open source
Advisory

CVE-2023-31125 Node.js Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230622-0002/

NetApp published this final advisory covering CVE-2023-31125; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2023-28410 Intel Graphics Drivers Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230622-0004/

NetApp published this final advisory covering CVE-2023-28410; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2023-2156 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230622-0001/

NetApp published this final advisory covering CVE-2023-2156; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere; NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C; NetApp HCI Compute Node (Bootstrap OS).

Open source
Advisory

CVE-2023-2124 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230622-0010/

NetApp published this final advisory covering CVE-2023-2124; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C.

Open source
Advisory

CVE-2020-36694 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230622-0005/

NetApp published this interim advisory covering CVE-2020-36694; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C; NetApp HCI Baseboard Management Controller (BMC) - H610C; NetApp HCI Baseboard Management Controller (BMC) - H610S; NetApp HCI Baseboard Management Controller (BMC) - H615C; NetApp HCI Compute Node (Bootstrap OS).

Open source
Advisory

CVE-2018-3745 Node.js Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230622-0009/

NetApp published this final advisory covering CVE-2018-3745; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp Virtual Desktop Service (VDS); Spot PC.

Open source
Advisory

CVE-2023-32305 PostgreSQL Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230616-0006/

NetApp published this final advisory covering CVE-2023-32305; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2023-32233 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230616-0002/

NetApp published this final advisory covering CVE-2023-32233; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C.

Open source
Advisory

CVE-2023-31655 Redis Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230616-0005/

NetApp published this final advisory covering CVE-2023-31655; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2023-30086 Libtiff Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230616-0003/

NetApp published this final advisory covering CVE-2023-30086; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2022-40540 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230616-0001/

NetApp published this final advisory covering CVE-2022-40540; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C.

Open source
Advisory

May 2023 cURL/libcURL Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230609-0009/

NetApp published this interim advisory covering CVE-2023-28319, CVE-2023-28320, CVE-2023-28321, CVE-2023-28322; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Compute Node (Bootstrap OS); NetApp SolidFire & HCI Management Node; NetApp SolidFire & HCI Storage Node (Element Software); ONTAP 9; ONTAP Antivirus Connector.

Open source
Advisory

May 2023 NGINX Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230609-0006/

NetApp published this final advisory covering CVE-2023-28724, CVE-2023-28656; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp Cloud Backup OST Plug-in (formerly AltaVault OST Plug-in); NetApp HCI Compute Node (Bootstrap OS); ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2023-31436 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230609-0001/

NetApp published this final advisory covering CVE-2023-31436; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C.

Open source
Advisory

CVE-2023-31047 Django Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230609-0008/

NetApp published this final advisory covering CVE-2023-31047; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2023-2235 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230609-0002/

NetApp published this final advisory covering CVE-2023-2235; the API labels exploitation information as **Public**. The API currently lists affected products as: FAS/AFF Baseboard Management Controller (BMC) - 8300/8700/A400/C400; NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C.

Open source
Advisory

CVE-2023-2197 HashiCorp Vault Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230609-0007/

NetApp published this final advisory covering CVE-2023-2197; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2023-2176 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230609-0005/

NetApp published this final advisory covering CVE-2023-2176; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C.

Open source
Advisory

CVE-2023-2006 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230609-0004/

NetApp published this final advisory covering CVE-2023-2006; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C.

Open source
Advisory

CVE-2023-1387 Grafana Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230609-0003/

NetApp published this final advisory covering CVE-2023-1387; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2021-31239 SQLite Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230609-0010/

NetApp published this final advisory covering CVE-2021-31239; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere; NetApp HCI Compute Node (Bootstrap OS).

Open source
Advisory

CVE-2023-30846 Node.js Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230601-0008/

NetApp published this final advisory covering CVE-2023-30846; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2023-28856 Redis Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230601-0007/

NetApp published this interim advisory covering CVE-2023-28856; the API labels exploitation information as **Public**. The API currently lists affected products as: Management Services for Element Software and NetApp HCI.

Open source
Advisory

CVE-2023-27043 Python Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230601-0003/

NetApp published this interim advisory covering CVE-2023-27043; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Microsoft Windows; Active IQ Unified Manager for VMware vSphere; NetApp HCI Compute Node (Bootstrap OS); ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2023-2236 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230601-0010/

NetApp published this final advisory covering CVE-2023-2236; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C.

Open source
Advisory

CVE-2023-20873 Spring Boot Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230601-0009/

NetApp published this interim advisory covering CVE-2023-20873; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Linux; Active IQ Unified Manager for Microsoft Windows; Active IQ Unified Manager for VMware vSphere.

Open source
Advisory

CVE-2023-1989 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230601-0004/

NetApp published this final advisory covering CVE-2023-1989; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C.

Open source
Advisory

CVE-2023-1872 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230601-0002/

NetApp published this final advisory covering CVE-2023-1872; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C.

Open source
Advisory

CVE-2023-1829 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230601-0001/

NetApp published this final advisory covering CVE-2023-1829; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C.

Open source
Advisory

CVE-2022-21216 Intel Processor Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230601-0005/

NetApp published this interim advisory covering CVE-2022-21216; the API labels exploitation information as **Public**. The API currently lists affected products as: E-Series BIOS; FAS/AFF BIOS - A900/9500; NetApp HCI Compute Node BIOS.

Open source
Advisory

April 2023 Libxml2 Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230601-0006/

NetApp published this final advisory covering CVE-2023-28484, CVE-2023-29469; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere; NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C; NetApp HCI Compute Node (Bootstrap OS); NetApp SMI-S Provider; NetApp SolidFire & HCI Storage Node (Element Software); ONTAP 9; ONTAP Select Deploy administration utility; SnapManager for Hyper-V.

Open source
Advisory

March 2023 Hashicorp Vault Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230526-0008/

NetApp published this final advisory covering CVE-2023-25000, CVE-2023-0665, CVE-2023-0620; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2023-29323 OpenBSD Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230526-0006/

NetApp published this final advisory covering CVE-2023-29323; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2023-28756 Ruby Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230526-0004/

NetApp published this final advisory covering CVE-2023-28756; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Compute Node (Bootstrap OS).

Open source
Advisory

CVE-2023-28755 Ruby Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230526-0003/

NetApp published this final advisory covering CVE-2023-28755; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Compute Node (Bootstrap OS).

Open source
Advisory

CVE-2023-20862 Spring Security Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230526-0002/

NetApp published this final advisory covering CVE-2023-20862; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Linux; Active IQ Unified Manager for Microsoft Windows; Active IQ Unified Manager for VMware vSphere.

Open source
Advisory

CVE-2023-1670 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230526-0010/

NetApp published this final advisory covering CVE-2023-1670; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C.

Open source
Advisory

CVE-2022-4744 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230526-0009/

NetApp published this final advisory covering CVE-2022-4744; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C.

Open source
Advisory

CVE-2020-24736 SQLite Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230526-0005/

NetApp published this final advisory covering CVE-2020-24736; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Compute Node (Bootstrap OS).

Open source
Advisory

April 2023 Golang Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230526-0007/

NetApp published this final advisory covering CVE-2023-24536, CVE-2023-24534; the API labels exploitation information as **Public**. The API currently lists affected products as: Trident.

Open source
Advisory

April 2023 Eclipse Jetty Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230526-0001/

NetApp published this interim advisory covering CVE-2023-26049, CVE-2023-26048; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Linux; Active IQ Unified Manager for Microsoft Windows; E-Series SANtricity OS Controller Software 11.x; E-Series SANtricity Unified Manager and Web Services Proxy; NetApp HCI Compute Node (Bootstrap OS).

Open source
Advisory

February 2023 PHP Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230517-0001/

NetApp published this final advisory covering CVE-2023-0662, CVE-2023-0568; the API labels exploitation information as **Public**. The API currently lists affected products as: ONTAP 9 (formerly Clustered Data ONTAP).

Open source
Advisory

CVE-2023-28464 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230517-0004/

NetApp published this final advisory covering CVE-2023-28464; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C.

Open source
Advisory

CVE-2023-26463 strongSwan Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230517-0010/

NetApp published this final advisory covering CVE-2023-26463; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2023-2008 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230517-0007/

NetApp published this final advisory covering CVE-2023-2008; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C.

Open source
Advisory

CVE-2023-1838 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230517-0003/

NetApp published this final advisory covering CVE-2023-1838; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C.

Open source
Advisory

CVE-2023-0664 QEMU Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230517-0005/

NetApp published this final advisory covering CVE-2023-0664; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2023-0210 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230517-0002/

NetApp published this final advisory covering CVE-2023-0210; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C.

Open source
Advisory

CVE-2021-46880 LibreSSL Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230517-0006/

NetApp published this final advisory covering CVE-2021-46880; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Compute Node (Bootstrap OS).

Open source
Advisory

CVE-2023-30456 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230511-0007/

NetApp published this final advisory covering CVE-2023-30456; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C.

Open source
Advisory

CVE-2023-1652 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230511-0006/

NetApp published this final advisory covering CVE-2023-1652; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C.

Open source
Advisory

CVE-2023-1579 GNU Binutils Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20230511-0009/

NetApp published this final advisory covering CVE-2023-1579; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp Cloud Backup OST Plug-in (formerly AltaVault OST Plug-in); SRA Plugin for Linux.

Open source