DSA-2025-130: Security Update for Dell Precision Rack and Dell iDRAC9 for an Information Disclosure Vulnerability
Summary: Dell Precision Rack BIOS and Dell iDRAC9 with Lifecycle Controller remediation is available for an Information Disclosure vulnerability that could be exploited by malicious users to compromise the affected system. ...
Impact
Medium
Details
|
Proprietary Code CVEs |
Description |
CVSS Base Score |
CVSS Vector String |
|
CVE-2025-26482 |
Dell PowerEdge Server BIOS and Dell iDRAC9, all versions, contains an Information Disclosure vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Information Disclosure. |
4.9 |
|
Proprietary Code CVEs |
Description |
CVSS Base Score |
CVSS Vector String |
|
CVE-2025-26482 |
Dell PowerEdge Server BIOS and Dell iDRAC9, all versions, contains an Information Disclosure vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Information Disclosure. |
4.9 |
Affected Products & Remediation
|
Product |
Software/ Firmware |
Affected Versions |
Remediated Versions |
Release Date (MM/DD/YYYY) |
Link |
|
Precision 7920 Rack |
iDRAC9 |
Versions prior to 7.00.00.181 |
Version 7.00.00.181 or later |
03/21/2025 |
|
|
Precision 7920 XL Rack |
iDRAC9 |
Versions prior to 7.00.00.181 |
Version 7.00.00.181 or later |
03/21/2025 |
|
|
Precision 7960 Rack |
iDRAC9 |
Versions prior to 7.20.30.50 |
Version 7.20.30.50 or later |
07/10/2025 |
|
|
Precision 7960 XL Rack |
iDRAC9 |
Versions prior to 7.20.30.50 |
Version 7.20.30.50 or later |
07/10/2025 |
|
|
Precision 7920 Rack |
BIOS |
Versions prior to 2.23.0 |
Version 2.23.0 or later |
03/13/2025 |
|
|
Precision 7920 XL Rack |
BIOS |
Versions prior to 2.23.0 |
Version 2.23.0 or later |
03/13/2025 |
|
|
Precision 7960 Rack |
BIOS |
Versions prior to 2.5.4 |
Version 2.5.4 or later |
03/28/2025 |
|
|
Precision 7960 XL Rack |
BIOS |
Versions prior to 2.5.4 |
Version 2.5.4 or later |
03/28/2025 |
|
Product |
Software/ Firmware |
Affected Versions |
Remediated Versions |
Release Date (MM/DD/YYYY) |
Link |
|
Precision 7920 Rack |
iDRAC9 |
Versions prior to 7.00.00.181 |
Version 7.00.00.181 or later |
03/21/2025 |
|
|
Precision 7920 XL Rack |
iDRAC9 |
Versions prior to 7.00.00.181 |
Version 7.00.00.181 or later |
03/21/2025 |
|
|
Precision 7960 Rack |
iDRAC9 |
Versions prior to 7.20.30.50 |
Version 7.20.30.50 or later |
07/10/2025 |
|
|
Precision 7960 XL Rack |
iDRAC9 |
Versions prior to 7.20.30.50 |
Version 7.20.30.50 or later |
07/10/2025 |
|
|
Precision 7920 Rack |
BIOS |
Versions prior to 2.23.0 |
Version 2.23.0 or later |
03/13/2025 |
|
|
Precision 7920 XL Rack |
BIOS |
Versions prior to 2.23.0 |
Version 2.23.0 or later |
03/13/2025 |
|
|
Precision 7960 Rack |
BIOS |
Versions prior to 2.5.4 |
Version 2.5.4 or later |
03/28/2025 |
|
|
Precision 7960 XL Rack |
BIOS |
Versions prior to 2.5.4 |
Version 2.5.4 or later |
03/28/2025 |
Dell recommends that customers apply both the Precision Rack 14G/16G platforms BIOS along with the iDRAC9 firmware versions to ensure complete mitigation. Customers should consider this review as part of their decision-making process when determining whether to apply the patch.
Revision History
|
Revision |
Date |
Description |
|
1.0 |
2025-10-30 |
Initial Release |