Skip to content
Dell TechnologiesCVE-2026-67271

Dell Technologies PowerStore: out-of-bounds write

Critical9.8CVE-2026-67271 · Published Aug 18, 2026 · updated Aug 31, 2026

Dell PowerStore SDNAS, contains an Out-of-bounds Write vulnerability in SMB/CIFS. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to denial of service and remote execution. This is a Critical vulnerability as a remote user could send a specially crafted SMB packet and cause a crash, that is persistent in case automatic restarts are enabled. Additionally, a more sophisticated attacker could use the same vulnerability for remote code execution.

Dell Technologies advisory

Affected versions

PackageAffectedFixed in
PowerStore 1000T
Product
< 5.0.0.2-2761110 or later5.0.0.2-2761110 or later
PowerStore 1200T
Product
< 5.0.0.2-2761110 or later5.0.0.2-2761110 or later
PowerStore 3000T
Product
< 5.0.0.2-2761110 or later5.0.0.2-2761110 or later
PowerStore 3200Q
Product
< 5.0.0.2-2761110 or later5.0.0.2-2761110 or later
PowerStore 3200T
Product
< 5.0.0.2-2761110 or later5.0.0.2-2761110 or later
PowerStore 5000T
Product
< 5.0.0.2-2761110 or later5.0.0.2-2761110 or later
PowerStore 500T
Product
< 5.0.0.2-2761110 or later5.0.0.2-2761110 or later
PowerStore 5200Q
Product
< 5.0.0.2-2761110 or later5.0.0.2-2761110 or later
PowerStore 5200T
Product
< 5.0.0.2-2761110 or later5.0.0.2-2761110 or later
PowerStore 7000T
Product
< 5.0.0.2-2761110 or later5.0.0.2-2761110 or later
PowerStore 9000T
Product
< 5.0.0.2-2761110 or later5.0.0.2-2761110 or later
PowerStore 9200T
Product
< 5.0.0.2-2761110 or later5.0.0.2-2761110 or later
Details and references

More Dell Technologies advisories

All Dell Technologies
Advisory
Dell Alienware Command Center
High7.3Aug 18
Dell Technologies Alienware Command Center (AWCC: denial of service
Medium6.0Aug 18
Dell Technologies PowerStore: missing authorization
High8.1Aug 18
Dell AppSync Version 4.6.0.0
High7.3Aug 18
Dell Technologies PowerStore: denial of service
High8.1Aug 18
Dell Technologies Watchdog Timer Driver: improper access control
High8.8Aug 18

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.