CVE-2025-7737 PUBLISHED

DoS Vulnerability in 10G iSCSI Interface of Hitachi Virtual Storage Platform

Assigner: Hitachi
Reserved: 17.07.2025 Published: 19.06.2026 Updated: 19.06.2026

DoS Vulnerability in 10G iSCSI Interface of Hitachi Virtual Storage Platform.

This issue affects Hitachi Virtual Storage Platform E990, E1090, E1090H: before DKCMAIN Ver.93-07-21-80/00-05, CHB(iSCSI) Ver.88-01-02-04, before DKCMAIN Ver.93-07-01-80/00-07, CHB(iSCSI) Ver.88-01-02-04, before DKCMAIN Ver.93-06-82-80/00-06, CHB(iSCSI) Ver.88-01-02-04, before DKCMAIN Ver.93-06-63-80/00-04, CHB(iSCSI) Ver.88-01-02-04; Hitachi Virtual Storage Platform E390, E590, E790, E390H, E590H, E790H: before DKCMAIN Ver.93-07-21-x0/00-05, CHB(iSCSI) Ver.88-01-02-04, before DKCMAIN Ver.93-07-01-x0/00-07, CHB(iSCSI) Ver.88-01-02-04, before DKCMAIN Ver.93-06-82-x0/00-06, CHB(iSCSI) Ver.88-01-02-04, before DKCMAIN Ver.93-06-63-x0/00-04, CHB(iSCSI) Ver.88-01-02-04, before DKCMAIN Ver.93-07-24-x0/00-02, CHB(iSCSI) Ver.88-01-02-04, before DKCMAIN Ver.93-07-02-x0/00-02, CHB(iSCSI) Ver.88-01-02-04; Hitachi Virtual Storage Platform G130, G150, G350, G370, G700, G900, F350, F370, F700, F900: before DKCMAIN Ver.88-08-10-x0/00-05, CHB(iSCSI) Ver.88-01-02-04; Hitachi Virtual Storage Platform G100, G200, G400, G600, G800, F400, F600, F800: before DKCMAIN Ver.83-06-20-x0/00-05, CHB(iSCSI) Ver.83-01-01-29; Hitachi Virtual Storage Platform VX8, 5100, 5500, 5100H, 5500H, 5200, 5600, 5200H, 5600H: before DKCMAIN Ver.90-09-01-00/01-01, CHB(iSCSI) Ver.90-01-01-07, before DKCMAIN Ver.90-08-83-00/01-01, CHB(iSCSI) Ver.90-01-01-07, before DKCMAIN Ver.90-08-63-00/01-01, CHB(iSCSI) Ver.90-01-01-07; Hitachi Virtual Storage Platform VX7, G1000, G1500, F1500: before DKCMAIN Ver.80-06-93-00/00-04, ISFC Ver.80-01-17.

Metrics

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
CVSS Score: 8.6

Product Status

Vendor Hitachi
Product Hitachi Virtual Storage Platform E990, E1090, E1090H
Versions Default: unaffected
  • affected from 0 to DKCMAIN Ver.93-07-21-80/00-05, CHB(iSCSI) Ver.88-01-02-04 (excl.)
  • affected from 0 to DKCMAIN Ver.93-07-01-80/00-07, CHB(iSCSI) Ver.88-01-02-04 (excl.)
  • affected from 0 to DKCMAIN Ver.93-06-82-80/00-06, CHB(iSCSI) Ver.88-01-02-04 (excl.)
  • affected from 0 to DKCMAIN Ver.93-06-63-80/00-04, CHB(iSCSI) Ver.88-01-02-04 (excl.)
Vendor Hitachi
Product Hitachi Virtual Storage Platform E390, E590, E790, E390H, E590H, E790H
Versions Default: unaffected
  • affected from 0 to DKCMAIN Ver.93-07-21-x0/00-05, CHB(iSCSI) Ver.88-01-02-04 (excl.)
  • affected from 0 to DKCMAIN Ver.93-07-01-x0/00-07, CHB(iSCSI) Ver.88-01-02-04 (excl.)
  • affected from 0 to DKCMAIN Ver.93-06-82-x0/00-06, CHB(iSCSI) Ver.88-01-02-04 (excl.)
  • affected from 0 to DKCMAIN Ver.93-06-63-x0/00-04, CHB(iSCSI) Ver.88-01-02-04 (excl.)
  • affected from 0 to DKCMAIN Ver.93-07-24-x0/00-02, CHB(iSCSI) Ver.88-01-02-04 (excl.)
  • affected from 0 to DKCMAIN Ver.93-07-02-x0/00-02, CHB(iSCSI) Ver.88-01-02-04 (excl.)
Vendor Hitachi
Product Hitachi Virtual Storage Platform G130, G150, G350, G370, G700, G900, F350, F370, F700, F900
Versions Default: unaffected
  • affected from 0 to DKCMAIN Ver.88-08-10-x0/00-05, CHB(iSCSI) Ver.88-01-02-04 (excl.)
Vendor Hitachi
Product Hitachi Virtual Storage Platform G100, G200, G400, G600, G800, F400, F600, F800
Versions Default: unaffected
  • affected from 0 to DKCMAIN Ver.83-06-20-x0/00-05, CHB(iSCSI) Ver.83-01-01-29 (excl.)
Vendor Hitachi
Product Hitachi Virtual Storage Platform VX8, 5100, 5500, 5100H, 5500H, 5200, 5600, 5200H, 5600H
Versions Default: unaffected
  • affected from 0 to DKCMAIN Ver.90-09-01-00/01-01, CHB(iSCSI) Ver.90-01-01-07 (excl.)
  • affected from 0 to DKCMAIN Ver.90-08-83-00/01-01, CHB(iSCSI) Ver.90-01-01-07 (excl.)
  • affected from 0 to DKCMAIN Ver.90-08-63-00/01-01, CHB(iSCSI) Ver.90-01-01-07 (excl.)
Vendor Hitachi
Product Hitachi Virtual Storage Platform VX7, G1000, G1500, F1500
Versions Default: unaffected
  • affected from 0 to DKCMAIN Ver.80-06-93-00/00-04, ISFC Ver.80-01-17 (excl.)

References

Problem Types

  • CWE-770 Allocation of resources without limits or throttling CWE

Impacts

  • CAPEC-482 TCP Flood