Dell EMC Updates
2485Warning Date
Severity Level
Warning Number
Target Sector
23 June, 2020
● Critical
2020-1384
All
Description:
Dell EMC has released security updates to address multiple vulnerabilities in the following products:
- Dell EMC VxRail Appliance
- versions prior to 4.7.511
- Dell EMC ViPR Controller
- versions prior to 3.6.2.5
Threats:
An attacker could exploit these vulnerabilities by doing the following:
- Obtain sensitive information
- Information disclosure
- Memory corruption
- Denial of service
- remote code execution
Best practice and Recommendations:
The CERT team encourages users to review Dell EMC security advisory and apply the necessary updates:
- https://www.dell.com/support/security/en-us/details/544662/DSA-2020-158-Dell-EMC-VxRail-Appliance-Security-Update-for-Multiple-Third-Party-Component-Vulnera
- https://www.dell.com/support/security/en-us/details/544661/DSA-2020-157-Dell-EMC-VxRail-Appliance-Security-Update-for-Multiple-Third-Party-Component-Vulner
- https://www.dell.com/support/security/en-us/details/544526/DSA-2020-056-Dell-EMC-ViPR-Controller-Security-Update-for-Multiple-Third-Party-Components-Vulnera