DSA-2021-144: Dell Wyse ThinOS Security Update for Multiple Vulnerabilities

Сводка: Dell Wyse ThinOS (9.x) remediation is available for multiple security vulnerabilities that may be exploited by malicious users to compromise the affected system.

Данная статья применяется к Данная статья не применяется к Эта статья не привязана к какому-либо конкретному продукту. В этой статье указаны не все версии продуктов.

Влияние

High

Подробные сведения

Proprietary Code CVEs Description CVSS Base Score CVSS Vector String
CVE-2021-21597 Dell Wyse ThinOS (9.x), version 9.0, contains a Sensitive Information Disclosure Vulnerability. An authenticated malicious user with physical access to the system may exploit this vulnerability to read sensitive information written to the log files. 7.2 CVSS:3.1/AV:P/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
CVE-2021-21598 Dell Wyse ThinOS (9.x), versions 9.0, 9.1, and 9.1 MR1, contain a Sensitive Information Disclosure Vulnerability. An authenticated attacker with physical access to the system may exploit this vulnerability to read sensitive Smartcard data in log files. 3.9 CVSS:3.1/AV:P/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Proprietary Code CVEs Description CVSS Base Score CVSS Vector String
CVE-2021-21597 Dell Wyse ThinOS (9.x), version 9.0, contains a Sensitive Information Disclosure Vulnerability. An authenticated malicious user with physical access to the system may exploit this vulnerability to read sensitive information written to the log files. 7.2 CVSS:3.1/AV:P/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
CVE-2021-21598 Dell Wyse ThinOS (9.x), versions 9.0, 9.1, and 9.1 MR1, contain a Sensitive Information Disclosure Vulnerability. An authenticated attacker with physical access to the system may exploit this vulnerability to read sensitive Smartcard data in log files. 3.9 CVSS:3.1/AV:P/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Dell рекомендует всем клиентам учитывать как базовую оценку CVSS, так и любые временные и обусловленные средой оценки, которые могут повлиять на потенциальную степень серьезности конкретной уязвимости.

Затронутые продукты и исправление

Product Affected Versions Updated versions Link to update
Dell Wyse 3040 Thin Client 9.0, 9.1 9.1 MR3 Dell Wyse 3040 Thin Client
Dell Wyse 3040 Thin Client with PCoIP 9.0, 9.1 9.1 MR3 Dell Wyse 3040 Thin Client with PCoIP
Dell Wyse 5070 Thin Client 9.0, 9.1 9.1 MR3 Dell Wyse 5070 Thin Client
Dell Wyse 5470 Thin Client 9.0, 9.1 9.1 MR3 Dell Wyse 5470 Thin Client
Dell Wyse 5470 All-in-One Thin Client 9.0, 9.1 9.1 MR3 Dell Wyse 5470 All-in-One Thin Client
Dell Wyse 5070 Thin Client with PCoIP 9.0, 9.1 9.1 MR3 Dell Wyse 5070 Thin Client with PCoIP
Dell Wyse 5470 Thin Client with PCoIP 9.0, 9.1 9.1 MR3 Dell Wyse 5470 Thin Client with PCoIP
Dell Wyse 5470 All-in-One Thin Client with PCoIP 9.0, 9.1 9.1 MR3 Dell Wyse 5470 All-in-One Thin Client with PCoIP
Product Affected Versions Updated versions Link to update
Dell Wyse 3040 Thin Client 9.0, 9.1 9.1 MR3 Dell Wyse 3040 Thin Client
Dell Wyse 3040 Thin Client with PCoIP 9.0, 9.1 9.1 MR3 Dell Wyse 3040 Thin Client with PCoIP
Dell Wyse 5070 Thin Client 9.0, 9.1 9.1 MR3 Dell Wyse 5070 Thin Client
Dell Wyse 5470 Thin Client 9.0, 9.1 9.1 MR3 Dell Wyse 5470 Thin Client
Dell Wyse 5470 All-in-One Thin Client 9.0, 9.1 9.1 MR3 Dell Wyse 5470 All-in-One Thin Client
Dell Wyse 5070 Thin Client with PCoIP 9.0, 9.1 9.1 MR3 Dell Wyse 5070 Thin Client with PCoIP
Dell Wyse 5470 Thin Client with PCoIP 9.0, 9.1 9.1 MR3 Dell Wyse 5470 Thin Client with PCoIP
Dell Wyse 5470 All-in-One Thin Client with PCoIP 9.0, 9.1 9.1 MR3 Dell Wyse 5470 All-in-One Thin Client with PCoIP

История изменений

RevisionDateDescription
1.02021-07-21Initial Release

Связанная информация

Затронутые продукты

Product Security Information, Dell ThinOS
Свойства статьи
Номер статьи: 000189543
Тип статьи: Dell Security Advisory
Последнее изменение: 18 Sep 2025
Получите ответы на свои вопросы от других пользователей Dell
Услуги технической поддержки
Проверьте, распространяются ли на ваше устройство услуги технической поддержки.