DSA-2021-307: Dell EMC Integrated System for Azure Stack HCI Security Update for Apache Log4j Remote Code Execution Vulnerability (CVE-2021-44228 and CVE-2021-45046)
Zusammenfassung: Dell EMC Integrated System for Azure Stack HCI is impacted by the Apache Log4j Remote Code Execution Vulnerability that may be exploited by malicious users to compromise the affected system. Dell recommends implementing the remediation seen below as soon as possible in light of the critical severity of the vulnerability. ...
Dieser Artikel gilt für
Dieser Artikel gilt nicht für
Dieser Artikel ist nicht an ein bestimmtes Produkt gebunden.
In diesem Artikel werden nicht alle Produktversionen aufgeführt.
Auswirkungen
Critical
Details
| Third-party Component | CVE | More information |
| Apache Log4j | CVE-2021-44228 CVE-2021-45046 |
Apache Log4j Remote Code Execution |
| Third-party Component | CVE | More information |
| Apache Log4j | CVE-2021-44228 CVE-2021-45046 |
Apache Log4j Remote Code Execution |
Betroffene Produkte und Korrektur
Dell EMC Integrated System for Azure Stack HCI is not impacted by this advisory. If Dell EMC SupportAssist Enterprise (SAE) or Dell EMC Secure Connect Gateway (SCG) were optionally installed with Dell EMC Integrated System for Azure Stack HCI, monitor the following advisories.
Apply workaround guidance and remediations as they become available.
Apply workaround guidance and remediations as they become available.
| CVE Addressed | Products | Link to Update |
| CVE-2021-44228 CVE-2021-45046 |
Dell EMC SupportAssist Enterprise (SAE) | SAE - DSA-2021-283 SCG Appliance - DSA-2021-282 SCG Policy Manager DSA-2021-281 |
| Dell EMC Secure Connect Gateway (SCG) |
Dell EMC Integrated System for Azure Stack HCI is not impacted by this advisory. If Dell EMC SupportAssist Enterprise (SAE) or Dell EMC Secure Connect Gateway (SCG) were optionally installed with Dell EMC Integrated System for Azure Stack HCI, monitor the following advisories.
Apply workaround guidance and remediations as they become available.
Apply workaround guidance and remediations as they become available.
| CVE Addressed | Products | Link to Update |
| CVE-2021-44228 CVE-2021-45046 |
Dell EMC SupportAssist Enterprise (SAE) | SAE - DSA-2021-283 SCG Appliance - DSA-2021-282 SCG Policy Manager DSA-2021-281 |
| Dell EMC Secure Connect Gateway (SCG) |
Revisionsverlauf
| Revision | Date | Description |
| 1.0 | 2021-12-17 | Initial Release |
| 1.1 | 2021-12-27 | Added SAE DSA |
| 1.2 | 2021-12-27 | Added CVE-2021-45046 |
Zugehörige Informationen
Rechtlicher Hinweis
Betroffene Produkte
Integrated System for Microsoft Azure Stack Hub, Product Security InformationArtikeleigenschaften
Artikelnummer: 000194622
Artikeltyp: Dell Security Advisory
Zuletzt geändert: 07 Jan. 2022
Antworten auf Ihre Fragen erhalten Sie von anderen Dell NutzerInnen
Support Services
Prüfen Sie, ob Ihr Gerät durch Support Services abgedeckt ist.