Dell EMC Update
2849Warning Date
Severity Level
Warning Number
Target Sector
4 October, 2020
● High
2020-1868
All
Description:
Dell EMC has released a security updates to address multiple vulnerabilities in the following products:
- Dell EMC Isilon OneFS
- versions 8.1 and later
- Dell EMC PowerScale OneFS
- version 9.0.0
- Dell EMC PowerMax eNAS
- HTTPS
- ECOM
- SSH
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Gain access to data stored on the /ifs directory .
- Recover certain plaintext data from an arbitrary block of ciphertext.
Best practice and Recommendations:
The CERT team encourages users to review DELL EMC security advisory and apply the necessary updates:
- https://www.dell.com/support/security/en-us/details/546591/DSA-2020-225-Dell-EMC-Isilon-OneFS-and-Dell-EMC-PowerScale-OneFS-Security-Update-for-remotesuppor
- https://www.dell.com/support/security/en-us/details/546592/DSA-2020-222-Dell-EMC-PowerMax-Embedded-NAS-eNAS-Security-Update-for-Multiple-Third-party-Compo