CVE-2024-25964: Dell Powerscale Onefs

High severity, CVSS 7.5. EPSS: 0.7% chance of exploitation in the next 30 days.

Dell PowerScale OneFS 9.5.0.x through 9.7.0.x contain a covert timing channel vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to denial of service.

Affected products

  • Dell Powerscale Onefs: from 9.5.0.0, before 9.5.0.7 (fixed in 9.5.0.7); from 9.6.1, before 9.7.0.1 (fixed in 9.7.0.1)

Published 2024-03-25. Last modified 2026-06-17.