CVE-2017-12420: Netapp Clustered Data Ontap

High severity, CVSS 8.8. EPSS: 3.1% chance of exploitation in the next 30 days.

Heap-based buffer overflow in the SMB implementation in NetApp Clustered Data ONTAP before 8.3.2P8 and 9.0 before P2 allows remote authenticated users to cause a denial of service or execute arbitrary code.

Affected products

  • Netapp Clustered Data Ontap: up to and including 8.3.2; up to and including 9.0

Published 2017-08-18. Last modified 2026-06-17.