📦 Starwind San \& Nas

by Starwindsoftware

🔍 What is Starwind San \& Nas?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-43527

CRITICAL CVSS 9.8 Dec 8, 2021

CVE-2021-43527 is a critical heap overflow vulnerability in NSS (Network Security Services) that allows remote code execution when processing malicious DER-encoded DSA or RSA-PSS signatures. It affect...

CVE-2022-32268

HIGH CVSS 8.8 Jun 3, 2022

CVE-2022-32268 allows remote code execution in StarWind SAN and NAS via a command injection vulnerability in the REST API. Attackers with non-root user access can inject arbitrary commands that execut...

CVE-2020-36385

HIGH CVSS 7.8 Jun 7, 2021

This CVE describes a use-after-free vulnerability in the Linux kernel's InfiniBand subsystem (ucma.c). Attackers with local access can exploit this to cause kernel crashes or potentially execute arbit...