{"api_version":"v1","generated_at":"2026-10-09T07:15:00+00:00","product":{"cve_count":9,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-dell-enterprise-sonic-os-6d24a0fe6573","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"Enterprise SONiC OS","next_cursor":null,"observations":[{"affected":"4.5.0 < 4.5.0a","affected_versions_present":true,"cve_id":"CVE-2025-38741","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-38741","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-08-05T15:47:36.772Z","patch_url":"https://www.dell.com/support/kbdoc/en-us/000340083/dsa-2025-275-security-update-for-dell-enterprise-sonic-distribution-vulnerabilities","primary_source":"","published":"2025-08-04T18:22:00.580Z"},{"affected":"N/A < 4.4.1; N/A < 4.2.3","affected_versions_present":true,"cve_id":"CVE-2025-23374","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-23374","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-01-30T15:10:24.732Z","patch_url":"https://www.dell.com/support/kbdoc/en-us/000278568/dsa-2025-057-security-update-for-dell-enterprise-sonic-distribution-vulnerability","primary_source":"","published":"2025-01-30T04:14:04.226Z"},{"affected":"N/A < 4.1.6; N/A < 4.2.2","affected_versions_present":true,"cve_id":"CVE-2024-45763","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-45763","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-11-13T18:39:26.443Z","patch_url":"https://www.dell.com/support/kbdoc/en-us/000245655/dsa-2024-449-security-update-for-dell-enterprise-sonic-distribution-vulnerabilities","primary_source":"","published":"2024-11-08T16:15:34.861Z"},{"affected":"N/A < 4.1.6; N/A < 4.2.2","affected_versions_present":true,"cve_id":"CVE-2024-45764","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-45764","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-11-08T17:03:26.047Z","patch_url":"https://www.dell.com/support/kbdoc/en-us/000245655/dsa-2024-449-security-update-for-dell-enterprise-sonic-distribution-vulnerabilities","primary_source":"","published":"2024-11-08T16:08:01.769Z"},{"affected":"N/A < 4.1.6; N/A < 4.2.2","affected_versions_present":true,"cve_id":"CVE-2024-45765","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-45765","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-11-08T17:03:50.218Z","patch_url":"https://www.dell.com/support/kbdoc/en-us/000245655/dsa-2024-449-security-update-for-dell-enterprise-sonic-distribution-vulnerabilities","primary_source":"","published":"2024-11-08T15:59:33.760Z"},{"affected":"3.5.x; 4.0.x; 4.1.0","affected_versions_present":true,"cve_id":"CVE-2023-32484","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-32484","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-27T18:15:39.590Z","patch_url":"https://www.dell.com/support/kbdoc/en-us/000216586/dsa-2023-284-security-update-for-dell-emc-enterprise-sonic-os-command-injection-vulnerability-when-using-remote-user-authentication","primary_source":"","published":"2024-02-15T12:49:01.000Z"},{"affected":"\u2264 3.5.3, 3.5.4, 4.0.0, 4.0.1, 4.0.2","affected_versions_present":true,"cve_id":"CVE-2023-24574","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-24574","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-03-27T13:26:26.696Z","patch_url":"https://www.dell.com/support/kbdoc/en-us/000208165/dsa-2023-039-dell-emc-enterprise-sonic-security-update-for-an-uncontrolled-resource-consumption-vulnerability","primary_source":"","published":"2023-02-02T16:04:58.071Z"},{"affected":"unspecified < 4.0.2","affected_versions_present":true,"cve_id":"CVE-2022-34425","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-34425","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-09-17T02:57:44.103Z","patch_url":"https://www.dell.com/support/kbdoc/en-us/000203395/dsa-2022-257-dell-emc-enterprise-sonic-security-update-for-ssh-cryptographic-key-vulnerability","primary_source":"","published":"2022-10-10T20:55:10.757Z"},{"affected":"unspecified < 3.4.0","affected_versions_present":true,"cve_id":"CVE-2021-36309","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-36309","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-09-16T21:04:22.104Z","patch_url":"https://www.dell.com/support/kbdoc/en-us/000191690/DSA-2021-190-Dell-Enterprise-SONiC-OS-Security-Update-for-an-information-disclosure-Vulnerability","primary_source":"","published":"2021-10-01T20:20:59.512Z"}],"source_generated_at":"2026-10-08T06:18:52.353Z","vendor":"Dell"}}
