Dell EMC Updates
2531Warning Date
Severity Level
Warning Number
Target Sector
8 June, 2021
● Critical
2021-3005
All
Description:
Dell EMC has released security updates to address several vulnerabilities in the following products:
- DELL Secure Remote Services Virtual Edition
- Curl and libcurl
- cyrus-sasl
- expat
- Glib and supported packages
- Grub2
- Java
- jquery
- Kernel
- Krb
- ldap
- Less
- libfreetype6
- libgthread-32 bit
- libmspack0
- libnghttp2
- Libproxy
- libX11
- Libxml2
- Openssh
- Openssl
- postgresql
- python
- Python and bind
- Sudo
- Tar
- unzip
- Util-linux and supported packages
- Dell VxRail Appliance
- VMware vCenter Server
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Execute arbitrary code –remotely
- Authentication bypass
- Buffer overflow
Best practice and Recommendations:
The CERT team encourages users to review Dell EMC security advisory and apply the necessary updates: