Dell EMC Updates
2398Warning Date
Severity Level
Warning Number
Target Sector
6 August, 2020
● Critical
2020-1605
All
Description:
DELL EMC has released security updates to address several vulnerabilities in the following products:
- Oracle Java within Dell EMC NetWorker Virtual Edition
- SUSE component within Dell EMC NetWorker vProxy
- Oracle JRE within Dell EMC Data Protection Advisor
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Bypass of a protection mechanism
- Unauthorized disclosure of information
- Denial of service attack (DoS)
Best practice and Recommendations:
The CERT team encourages users to review DELL EMC security advisory and apply the necessary updates:
- https://www.dell.com/support/security/en-us/details/545636/DSA-2020-198-Dell-EMC-NetWorker-Virtual-Edition-Security-Update-for-Oracle-Java-Vulnerabilities
- https://www.dell.com/support/security/en-us/details/545653/DSA-2020-199-Dell-EMC-NetWorker-vProxy-Security-Update-for-SLES-Vulnerabilities
- https://www.dell.com/support/security/en-us/details/545631/DSA-2020-184-Dell-EMC-Data-Protection-Advisor-Security-Update-for-Oracle-JRE-October-2019-CPU-V#