Out-of-Bounds Read in Dell ControlVault3 and ControlVault3 Plus
CVE-2025-24311
8.4HIGH
What is CVE-2025-24311?
An out-of-bounds read vulnerability has been identified in the functionality of Dell ControlVault3 and ControlVault3 Plus. This issue arises due to improper handling in the cv_send_blockdata method, allowing an attacker to exploit this flaw through specially crafted ControlVault API calls. When invoked, such calls can lead to sensitive information being inadvertently exposed, potentially compromising system security.
Affected Version(s)
BCM5820X NA
ControlVault3 0 < 5.15.10.14
ControlVault3 Plus 0 < 6.2.26.36