DSA-2026-113: Security Update for Dell iDRAC9 and iDRAC10 Vulnerabilities
Shrnutí: Dell iDRAC9 and iDRAC10 remediations are available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system.
Vliv
Medium
Podrobnosti
|
Proprietary Code CVEs |
Description |
CVSS Base Score |
CVSS Vector String |
|
CVE-2026-26945 |
Dell Integrated Dell Remote Access Controller 9, 14G versions prior to 7.00.00.181, 15G and 16G versions prior to 7.20.10.50 and Dell Integrated Dell Remote Access Controller 10, 17G versions prior to 1.20.25.00, contain a Process Control vulnerability. A high privileged attacker with adjacent network access could potentially exploit this vulnerability, leading to code execution. |
5.3 |
|
|
CVE-2026-26948 |
Dell Integrated Dell Remote Access Controller 9, 14G versions prior to 7.00.00.174, 15G and 16G versions prior to 7.10.90.00, contain an Exposure of Sensitive System Information Due to Uncleared Debug Information vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to information disclosure. |
4.9 |
|
Proprietary Code CVEs |
Description |
CVSS Base Score |
CVSS Vector String |
|
CVE-2026-26945 |
Dell Integrated Dell Remote Access Controller 9, 14G versions prior to 7.00.00.181, 15G and 16G versions prior to 7.20.10.50 and Dell Integrated Dell Remote Access Controller 10, 17G versions prior to 1.20.25.00, contain a Process Control vulnerability. A high privileged attacker with adjacent network access could potentially exploit this vulnerability, leading to code execution. |
5.3 |
|
|
CVE-2026-26948 |
Dell Integrated Dell Remote Access Controller 9, 14G versions prior to 7.00.00.174, 15G and 16G versions prior to 7.10.90.00, contain an Exposure of Sensitive System Information Due to Uncleared Debug Information vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to information disclosure. |
4.9 |
Dotčené produkty a náprava
|
CVEs Addressed |
Product |
Affected Versions |
Remediated Versions |
Link |
|
CVE-2026-26945 |
iDRAC9 |
Versions prior to 7.00.00.181 |
Versions 7.00.00.181 or later |
https://www.dell.com/support/home/drivers/driversdetails?driverid=rvddr |
|
CVE-2026-26945 |
iDRAC9 |
Versions prior to 7.20.10.50 |
Versions 7.20.10.50 or later |
https://www.dell.com/support/home/drivers/driversdetails?driverid=5mxxn |
|
CVE-2026-26945 |
iDRAC10 |
Versions prior to 1.20.25.00 |
Versions 1.20.25.00 or later |
https://www.dell.com/support/home/drivers/driversdetails?driverid=prndp |
|
CVE-2026-26948 |
iDRAC9 |
Versions prior to 7.00.00.174 |
Versions 7.00.00.174 or later |
https://www.dell.com/support/home/drivers/driversdetails?driverid=c2vdg |
|
CVE-2026-26948 |
iDRAC9 |
Versions prior to 7.10.90.00 |
Versions 7.10.90.00 or later |
https://www.dell.com/support/home/drivers/driversdetails?driverid=92mm7 |
|
CVEs Addressed |
Product |
Affected Versions |
Remediated Versions |
Link |
|
CVE-2026-26945 |
iDRAC9 |
Versions prior to 7.00.00.181 |
Versions 7.00.00.181 or later |
https://www.dell.com/support/home/drivers/driversdetails?driverid=rvddr |
|
CVE-2026-26945 |
iDRAC9 |
Versions prior to 7.20.10.50 |
Versions 7.20.10.50 or later |
https://www.dell.com/support/home/drivers/driversdetails?driverid=5mxxn |
|
CVE-2026-26945 |
iDRAC10 |
Versions prior to 1.20.25.00 |
Versions 1.20.25.00 or later |
https://www.dell.com/support/home/drivers/driversdetails?driverid=prndp |
|
CVE-2026-26948 |
iDRAC9 |
Versions prior to 7.00.00.174 |
Versions 7.00.00.174 or later |
https://www.dell.com/support/home/drivers/driversdetails?driverid=c2vdg |
|
CVE-2026-26948 |
iDRAC9 |
Versions prior to 7.10.90.00 |
Versions 7.10.90.00 or later |
https://www.dell.com/support/home/drivers/driversdetails?driverid=92mm7 |
The Affected Products and Remediation table above may not be a comprehensive list of all affected supported versions and may be updated as more information becomes available.
Historie změn
|
Revision |
Date |
Description |
|
1.0 |
2026-03-17 |
Initial Release |