Ga naar hoofdinhoud
  • Snel en eenvoudig bestellen
  • Bestellingen en de verzendstatus bekijken
  • Een lijst met producten maken en openen
  • Beheer uw Dell EMC locaties, producten en contactpersonen op productniveau met Company Administration.

Artikelnummer: 000201907


DSA-2022-195: Dell AppSync Security Update for Multiple Vulnerabilities in Embedded Service Enabler Component of AppSync

Samenvatting: Dell AppSync remediation is available for multiple security vulnerabilities in Embedded Service Enabler (ESE) that may be exploited by malicious users to compromise the affected system. ...

Article content


Impact

High

Gegevens

Third-party Component
 
CVEs More information
curl-7.66.0-4.14 and libexpat1-2.2.5 CVE-2021-22946

See NVD (http://nvd.nist.gov/ This hyperlink is taking you to a website outside of Dell Technologies.) for individual scores for each CVE.
CVE-2022-25315
OpenSSL 1.0.2za CVE-2022-0778
Third-party Component
 
CVEs More information
curl-7.66.0-4.14 and libexpat1-2.2.5 CVE-2021-22946

See NVD (http://nvd.nist.gov/ This hyperlink is taking you to a website outside of Dell Technologies.) for individual scores for each CVE.
CVE-2022-25315
OpenSSL 1.0.2za CVE-2022-0778
Dell Technologies raadt aan dat alle klanten rekening houden met zowel de basisscore van CVSS als alle relevante tijdelijke en omgevingsscores die gevolgen kunnen hebben voor de mogelijke ernst van de specifieke beveiligingsproblemen.

Getroffen producten en herstel

Product Affected Versions Updated Version Link to Update  
Dell AppSync Versions 4.4.0.0 and 4.4.1.0 4.4.1.0_3996_R1 https://dl.dell.com/downloads/DLD2951_AppSync-patch-4.4.1.0_3996_R1-Software-(HotFix).zip  
 
 
 
NOTE:
  1. For AppSync 4.4.0.0, users must upgrade to AppSync 4.4.1.0 and then install above hotfix.
  2. For AppSync 4.4.1.0, users can directly install this hotfix to fix ESE vulnerability.
Product Affected Versions Updated Version Link to Update  
Dell AppSync Versions 4.4.0.0 and 4.4.1.0 4.4.1.0_3996_R1 https://dl.dell.com/downloads/DLD2951_AppSync-patch-4.4.1.0_3996_R1-Software-(HotFix).zip  
 
 
 
NOTE:
  1. For AppSync 4.4.0.0, users must upgrade to AppSync 4.4.1.0 and then install above hotfix.
  2. For AppSync 4.4.1.0, users can directly install this hotfix to fix ESE vulnerability.

Revisiegeschiedenis

RevisionDateDescription
1.02022-07-27Initial Release

Verwante informatie


Artikeleigenschappen


Getroffen product

AppSync

Datum laatst gepubliceerd

12 jun. 2023

Versie

2

Artikeltype

Dell Security Advisory