← back
CVE-2023-45085

When compute hosts are disabled and reenabled, they immediately transition to "ON", not "INIT"

CVSS 3.2 LOWEPSS 0.2%CWE-1419
Vexday Risk Score
8Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 3.2EPSS 0.2%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
05 Dec 2023Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
An issue exists in SoftIron HyperCloud where compute nodes may come online immediately without following the correct initialization process.  In this instance, workloads may be scheduled on these nodes and deploy to a failed or erroneous state, which impacts the availability of these workloads that may be deployed during this time window. This issue impacts HyperCloud versions from 2.0.0 to before 2.0.3.
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:N/I:N/A:L
Affected products
SoftIron · HyperCloud

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →