Dell issues urgent patches for critical CSM vulnerabilities
Dell has released fixes for two critical vulnerabilities in its Container Storage Modules (CSM), which link enterprise storage arrays to Kubernetes environments. The flaws could let unauthenticated attackers gain full administrative control over storage resources across all tenants. Dell also patched four more major issues, including vulnerabilities that could give root access on cluster nodes. Customers are urged to update to CSM version 1.18.0 or newer immediately.
- Two CSM flaws allow full admin takeover by attackers
- Four more vulnerabilities could escalate to root access
- All flaws fixed in version 1.18.0 or later
- No evidence yet of these flaws exploited in the wild
- Dell advises immediate updates for all customers
Sources covering this
In this story
More in Cybersecurity
Chinese hackers use Warlock ransomware in SharePoint attacks
A Chinese hacking group has used Warlock ransomware to target organizations serving essential services in Portuguese- and…
Microsoft's X account compromised to promote crypto scam
Unknown attackers took control of Microsoft's official X account, which has over 13 million followers, to promote a fraudulent…
Federal judge rules warrantless Flock search unconstitutional
A federal judge in Oklahoma found that a police officer violated constitutional protections by checking a car's license plate in Flock’s…
Florida county finds 11 unauthorized surveillance cameras
Authorities in St.