DSA-2021-005: Dell EMC Cloud Tiering Appliance Security Update for Multiple Third-Party Component Vulnerabilities

Summary: Dell EMC Cloud Tiering Appliance contains remediation for multiple security vulnerabilities that may be exploited by malicious users to compromise the affected system.

This article applies to This article does not apply to This article is not tied to any specific product. Not all product versions are identified in this article.

Impact

High

Details

.

Third-Party Component
 
CVEs More information
libopenssl CVE-2020-1971 https://www.suse.com/security/cve/CVE-2020-1971/
CVE-2016-2183 https://www.suse.com/security/cve/CVE-2016-2183/
java-1_8_0-openjdk CVE-2016-2183 https://www.suse.com/security/cve/CVE-2013-2566/
openssl CVE-2020-1971 https://www.suse.com/security/cve/CVE-2020-1971/
CVE-2016-2183 https://www.suse.com/security/cve/CVE-2016-2183/
Third-Party Component
 
CVEs More information
libopenssl CVE-2020-1971 https://www.suse.com/security/cve/CVE-2020-1971/
CVE-2016-2183 https://www.suse.com/security/cve/CVE-2016-2183/
java-1_8_0-openjdk CVE-2016-2183 https://www.suse.com/security/cve/CVE-2013-2566/
openssl CVE-2020-1971 https://www.suse.com/security/cve/CVE-2020-1971/
CVE-2016-2183 https://www.suse.com/security/cve/CVE-2016-2183/
Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.

Affected Products & Remediation

CVE(s) Addressed Product Affected Version(s) Updated Version(s) Links to Update
CVE-2020-1971 Cloud Tiering Appliance
 
Versions 13.0.0.0.16 to 13.0.0.3.20
 
13.0.0.3.21 For CTA and CTA-HA:
https://www.dell.com/support/home/en-in/product-support/product/cloud-tiering-appliance/drivers

For CTA/VE and CTA-HA/VE:
https://www.dell.com/support/home/en-in/product-support/product/cloud-tiering-applianceve/drivers
CVE-2016-2183 Cloud Tiering Appliance Versions prior to 13.0.0.3.20 13.0.0.3.21 and CTA12.1-1012186-securityPatch-5
 
CVE(s) Addressed Product Affected Version(s) Updated Version(s) Links to Update
CVE-2020-1971 Cloud Tiering Appliance
 
Versions 13.0.0.0.16 to 13.0.0.3.20
 
13.0.0.3.21 For CTA and CTA-HA:
https://www.dell.com/support/home/en-in/product-support/product/cloud-tiering-appliance/drivers

For CTA/VE and CTA-HA/VE:
https://www.dell.com/support/home/en-in/product-support/product/cloud-tiering-applianceve/drivers
CVE-2016-2183 Cloud Tiering Appliance Versions prior to 13.0.0.3.20 13.0.0.3.21 and CTA12.1-1012186-securityPatch-5
 

Workarounds & Mitigations

.

Related Information

Affected Products

Cloud Tiering Appliance, Cloud Tiering Appliance

Products

Cloud Tiering Appliance Platform, Cloud Tiering Appliance/VE
Article Properties
Article Number: 000182237
Article Type: Dell Security Advisory
Last Modified: 28 يناير 2021
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.