DELL EMC Update
2611Warning Date
Severity Level
Warning Number
Target Sector
16 February, 2021
● Critical
2021-2476
All
Description:
DELL EMC has released a security update to address several vulnerabilities in the following product:
- Dell EMC VPLEX
- xorg
- pam
- unzip
- libxslt
- dosfstools
- wget
- libtiff3
- libxml2
- fontconfig
- libical
- sqlite3
- libgcrypt
- tar
- libjasper
- cairo
- bash
- gstreamer
- coreutils
- gtk2
- dhcp
- bind-libs
- ed
- cpp
- libgnutls
- libsndfile
- strongswan
- OpenEXR
- libsmbclient
- libapr
- libncurses
- libvorbis
- libjpeg
- glibc
- apache
- libxml
- postgresql
- bind-libs
- bind-utils
- perl
- gpg2
- python
- opensc
- libmspack
- sqlite
- SDL
- Oracle JRE
- Intel L1D Sampling (Only VS6 Hyperion Platform Impacted)
- Mergepoint EMS (Only VS6 Hyperion platform Impacted)
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Execute arbitrary code -remotely
- Denial of service attack (DoS) -remotely
- Escalation of privilege
- Unauthorized disclosure of information
- Bypass of a protection mechanism
Best practice and Recommendations:
The CERT team encourages users to review DELL EMC security advisory and apply the necessary updates: