CVE-2024-37139: Dell Data Domain Operating System

Medium severity, CVSS 6.5. EPSS: 0.5% chance of exploitation in the next 30 days.

Dell PowerProtect DD, versions prior to 8.0, LTS 7.13.1.0, LTS 7.10.1.30, LTS 7.7.5.40 contain an Improper Control of a Resource Through its Lifetime vulnerability in an admin operation. A remote low privileged attacker could potentially exploit this vulnerability, leading to temporary resource constraint of system application. Exploitation may lead to denial of service of the application.

Affected products

  • Dell Data Domain Operating System: before 7.7.5.40 (fixed in 7.7.5.40); from 7.8.0.0, before 7.10.1.30 (fixed in 7.10.1.30); from 7.11.0.0, before 7.13.1.0 (fixed in 7.13.1.0)

Published 2024-06-26. Last modified 2026-06-17.