CVE-2023-45085
When compute hosts are disabled and reenabled, they immediately transition to "ON", not "INIT"
Vexday Risk Score
8Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 3.2EPSS 0.2%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
05 Dec 2023Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
An issue exists in SoftIron HyperCloud where compute nodes may come online immediately without following the correct initialization process. In this instance, workloads may be scheduled on these nodes and deploy to a failed or erroneous state, which impacts the availability of these workloads that may be deployed during this time window.
This issue impacts HyperCloud versions from 2.0.0 to before 2.0.3.
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:N/I:N/A:L
Affected products
SoftIron · HyperCloudWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
https://advisories.softiron.cloud