DSA-2022-103: Dell EMC NetWorker Security Update for Multiple Vulnerabilities
Sommaire: Dell EMC NetWorker remediation is available for multiple security vulnerabilities that may be exploited by malicious users to compromise the affected system. Only NetWorker Management Console Server and NetWorker Server components are impacted by these vulnerabilities. ...
Cet article s’applique à
Cet article ne s’applique pas à
Cet article n’est lié à aucun produit spécifique.
Toutes les versions de produits ne sont pas identifiées dans cet article.
Impact
Critical
Détails
| Proprietary Code CVE | Description | CVSS Base Score | CVSS Vector String |
| CVE-2022-29082 | Dell EMC NetWorker versions 19.1.x, 19.2.x, 19.3.x, 19.4.x, 19.5.x, 19.6, 19.6.0.1, 19.6.0.2, and 19.6.1 contain an Improper Validation of Certificate with Host Mismatch vulnerability in RabbitMQ port 5671 which may allow remote attackers to spoof certificates. | 3.7 | CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:L/I:L/A:N |
| Third-Party Component | CVE | More Information |
| Apache HTTP | CVE-2022-22720 | See NVD (http://nvd.nist.gov/) for individual scores for each CVE |
| Proprietary Code CVE | Description | CVSS Base Score | CVSS Vector String |
| CVE-2022-29082 | Dell EMC NetWorker versions 19.1.x, 19.2.x, 19.3.x, 19.4.x, 19.5.x, 19.6, 19.6.0.1, 19.6.0.2, and 19.6.1 contain an Improper Validation of Certificate with Host Mismatch vulnerability in RabbitMQ port 5671 which may allow remote attackers to spoof certificates. | 3.7 | CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:L/I:L/A:N |
| Third-Party Component | CVE | More Information |
| Apache HTTP | CVE-2022-22720 | See NVD (http://nvd.nist.gov/) for individual scores for each CVE |
Produits touchés et correction
| Product | Affected Versions | Updated Versions | Link to Update |
| Dell EMC NetWorker | 19.1.x | 19.6.0.3, 19.5.0.7 |
https://www.dell.com/support/home/en-in/product-support/product/networker/drivers |
| 19.2.x | |||
| 19.3.x | |||
| 19.4.x | |||
| 19.5.x | |||
| 19.6 | |||
| 19.6.0.1 | |||
| 19.6.0.2 | |||
| 19.6.1 |
| Product | Affected Versions | Updated Versions | Link to Update |
| Dell EMC NetWorker | 19.1.x | 19.6.0.3, 19.5.0.7 |
https://www.dell.com/support/home/en-in/product-support/product/networker/drivers |
| 19.2.x | |||
| 19.3.x | |||
| 19.4.x | |||
| 19.5.x | |||
| 19.6 | |||
| 19.6.0.1 | |||
| 19.6.0.2 | |||
| 19.6.1 |
Historique de révision
| Revision | Date | Description |
| 1.0 | 2022-04-22 | Initial Release |
| 2.0 | 2022-05-31 | Added 19.5.0.7 as an Updated Version |
Renseignements connexes
Avis de non-responsabilité
Produits touchés
NetWorker Family, NetWorker, Product Security InformationPropriétés de l’article
Numéro d’article: 000198987
Type d’article: Dell Security Advisory
Dernière modification: 31 mai 2022
Obtenez des réponses à vos questions auprès d’autre utilisateurs de Dell
Services de soutien
Vérifiez si votre appareil est couvert par les services de soutien.