StorageGRID (formerly StorageGRID Webscale) versions prior to 11.7.0.9 and 11.8.0.5 are susceptible to disclosure of sensitive information via complex MiTM attacks due to a vulnerability in the SSH cryptographic implementation.
The product does not verify, or incorrectly verifies, the cryptographic signature for data.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Storagegrid | Netapp | * | 11.7.0.9 (excluding) |
Storagegrid | Netapp | 11.8.0 (including) | 11.8.0.5 (excluding) |