Dell Update
2838Warning Date
Severity Level
Warning Number
Target Sector
24 March, 2021
● Critical
2021-2662
All
Description:
Dell EMC has released security update to address multiple vulnerabilities in the following product:
- Dell Disk Library for mainframe (DLm)
- SUSE Linux 12 SP3 LTSS multiple OS components
- Dell ECS
- Intel® Boot Guard Firmware
- Intel® CSME, SPS Firmware
- Oracle Java SE
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Unauthorized disclosure of information
- Denial of service attack (DoS)
Best practice and Recommendations:
The CERT team encourages users to review Dell EMC security advisory and apply the necessary updates:
- https://www.dell.com/support/kbdoc/en-us/000184504/dsa-2021-067-dell-emc-disk-library-for-mainframe-security-update-for-multiple-third-party-component-vulnerabilities
- https://www.dell.com/support/kbdoc/en-us/000184493/dsa-2021-010-dellemc-ecs-security-update-for-multiple-third-party-component-vulnerabilities