Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Enjoy members-only rewards and discounts
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.
Some article numbers may have changed. If this isn't what you're looking for, try searching all articles. Search articles

Article Number: 000181822


DSA-2021-008: Dell EMC Enterprise Hybrid Cloud Security Update for Multiple VMWare Vulnerabilities

Summary: VMware within Dell EMC Enterprise Hybrid Cloud requires a security update to address various vulnerabilities.

Article Content


Impact

Critical

Details

.

Third Party Component CVE More information
ESXi CVE-2020-4004 VMSA-2020-0026
CVE-2020-4005


For more information about any of the Common Vulnerabilities and Exposures (CVEs) mentioned here, consult the National Vulnerability Database (NVD) at http://nvd.nist.gov/home.cfm.

To search for a particular CVE, use the database’s search utility at http://web.nvd.nist.gov/view/vuln/search.
Third Party Component CVE More information
ESXi CVE-2020-4004 VMSA-2020-0026
CVE-2020-4005


For more information about any of the Common Vulnerabilities and Exposures (CVEs) mentioned here, consult the National Vulnerability Database (NVD) at http://nvd.nist.gov/home.cfm.

To search for a particular CVE, use the database’s search utility at http://web.nvd.nist.gov/view/vuln/search.
Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.

Affected Products and Remediation

CVE(s) Addressed Product Affected Version(s) Updated Version(s)
CVE-2020-4004 Enterprise Hybrid Cloud Versions prior to 4.1.2 4.1.2
CVE-2020-4005

The following Dell EMC Enterprise Hybrid Cloud release contains a resolution to these vulnerabilities:   
  • Dell EMC Enterprise Hybrid Cloud version 4.1.2
Follow the guidance in the security advisories for the individual components for remediation or hotfixes shown in the table above.

*Always reference the ESSM documentation for your Dell EMC Enterprise Hybrid Cloud system to ensure supported component compliance.
** ESSM documentation updates are published regularly, fixed component versions listed in the advisories may not be in the current ESSM revision.
*** In such cases, an RPQ is required to confirm correct feature support and operation of the component.
CVE(s) Addressed Product Affected Version(s) Updated Version(s)
CVE-2020-4004 Enterprise Hybrid Cloud Versions prior to 4.1.2 4.1.2
CVE-2020-4005

The following Dell EMC Enterprise Hybrid Cloud release contains a resolution to these vulnerabilities:   
  • Dell EMC Enterprise Hybrid Cloud version 4.1.2
Follow the guidance in the security advisories for the individual components for remediation or hotfixes shown in the table above.

*Always reference the ESSM documentation for your Dell EMC Enterprise Hybrid Cloud system to ensure supported component compliance.
** ESSM documentation updates are published regularly, fixed component versions listed in the advisories may not be in the current ESSM revision.
*** In such cases, an RPQ is required to confirm correct feature support and operation of the component.

Revision History

RevisionDateDescription
1.02021-01-11Initial Release

Related Information


Article Properties


Affected Product

Enterprise Hybrid Cloud, Enterprise Hybrid Cloud

Last Published Date

22 May 2021

Version

2

Article Type

Dell Security Advisory