Dell EMC Update
2423Warning Date
Severity Level
Warning Number
Target Sector
21 July, 2020
● Critical
2020-1522
All
Description:
DELL EMC has released a security update to address several vulnerabilities in the following product:
- Dell EMC CloudBoost Virtual Appliance
- sqlite3
- libtiff5
- ruby rails
- Wget
- libxslt1
- Curl
- File
- Intel microcode
- ntfs-3g
- Libgnutls
- Patch
- Sudo
- libseccomp2
- libexpat1
- libnss3
- Apache2
- libelf1
- libglib2.0
- bzip2
- Python
- Vim
- Linux
- Busybox
- Bash
- Ruby
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Execute arbitrary code
- Bypass of a protection mechanism
- Code injection
- Escalation of privilege
- Buffer overflow
Best practice and Recommendations:
The CERT team encourages users to review DELL EMC security advisory and apply the necessary updates: