Dell EMC Updates
2920Warning Date
Severity Level
Warning Number
Target Sector
2 July, 2020
● High
2020-1432
All
Description:
Dell EMC has released security updates to address multiple vulnerabilities in the following products:
- Dell EMC Servers:
- T140, T340, R240, R340, NX440 version 2.3.5
- T130, T330, R230, R330, NX430 version 2.10.1
- Dell EMC Cloud Tiering Appliance
- versions prior to 13.0.0.0.16
Threats:
An attacker could exploit these vulnerabilities by doing the following:
- Obtain sensitive information
- Information disclosure
- Memory corruption
- Denial of service
- remote code execution
Best practice and Recommendations:
The CERT team encourages users to review Dell EMC security advisory and apply the necessary updates:
- https://www.dell.com/support/security/en-us/details/544836/DSA-2020-162-Dell-EMC-Cloud-Tiering-Appliance-Security-Update-for-Multiple-Third-Party-Component
- https://www.dell.com/support/article/en-us/sln322030/dsa-2020-168-dell-emc-server-platform-security-advisory-for-intel-sa-00320-special-register-buffer-data-sampling?lang=en