Out-of-Bounds Write Vulnerability in Dell PowerStore SDNAS
CVE-2026-67271

9.8CRITICAL

Key Information:

Vendor

Dell

Vendor
CVE Published:
18 August 2026

What is CVE-2026-67271?

Dell PowerStore SDNAS is impacted by an Out-of-bounds Write vulnerability within the SMB/CIFS protocol. This flaw allows an unauthenticated remote attacker to exploit the system by sending a specially crafted SMB packet, which may lead to a Denial of Service situation. If automatic restarts are enabled, the system crash can persist, impacting operational continuity. Furthermore, this vulnerability could potentially be leveraged for Remote Code Execution by more sophisticated attackers, posing significant security risks to affected deployments.

Affected Version(s)

PowerStore 1000T 0 < 5.0.0.2-2761110 or later

PowerStore 1200T 0 < 5.0.0.2-2761110 or later

PowerStore 3000T 0 < 5.0.0.2-2761110 or later

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.