关键信息 漏洞概述 Advisory ID: NTAP-20210604-0005 CVE: CVE-2020-36313 Version: 4.0 Last Updated: 05/01/2024 Status: Final 漏洞描述 Summary: Multiple NetApp products incorporate Linux kernel. Linux Kernel versions prior to 5.7 are susceptible to a vulnerability which when successfully exploited could lead to disclosure of sensitive information, addition or modification of data, or Denial of Service (DoS). 影响 Impact: Successful exploitation of this vulnerability could lead to disclosure of sensitive information, addition or modification of data, or Denial of Service (DoS). 漏洞评分详情 CVE: CVE-2020-36313 CVSS Score: HIGH (7.8) Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H 公开和利用情况 Exploitation and Public Disclosure: NetApp is aware of public disclosure. However, NetApp is not aware of active exploitation of this vulnerability. 参考资料 References: NetApp will continue to monitor public sources for more information regarding this vulnerability, and will update this advisory if there are any changes. 其他信息 This advisory should be considered in combination with advisories regarding Full Disk Encryption or Secure Fileshares for disk vols, when used on NetApp products and versions.