DSA-2021-270: Enterprise Hybrid Cloud Security Update for Apache Log4j Remote Code Execution Vulnerability (CVE-2021-44228)

Oversigt: Enterprise Hybrid Cloud remediation is available for the Apache Log4j Remote Code Execution Vulnerability that may be exploited by malicious users to compromise the affected system. Dell recommends implementing this remediation as soon as possible in light of the critical severity of the vulnerability. ...

Denne artikel gælder for Denne artikel gælder ikke for Denne artikel er ikke knyttet til et bestemt produkt. Det er ikke alle produktversioner, der er identificeret i denne artikel.

Virkning

Critical

Oplysninger

Dell Technologies anbefaler, at alle kunder tager hensyn til både CVSS-basisresultatet og alle relevante tidsmæssige og miljømæssige resultater, som kan have betydning for den potentielle alvorsgrad, der er forbundet med en bestemt sikkerhedsrisiko.

Berørte produkter og udbedring

Enterprise Hybrid Cloud 4.1.2 workflows is not impacted by this advisory, including packages Update 1 through 8.

Monitor the following advisories and apply workaround guidance and remediations as they become available:
 
CVE Addressed Products Link to Update
CVE-2021-44228 VMware vCenter Server Appliance VMSA-2021-0028.3
VMware vRealize Automation 7.x
VMware vRealize Orchestrator 7.x
VMware NSX for Data Center for vSphere 6.x
VMware vRealize Log Insight 8.x
VMware vRealize Business for Cloud 7.x
Dell EMC Data Domain OS DSA-2021-274
 
Dell EMC Avamar DSA-2021-277
Dell EMC VxRail DSA-2021-265
VxBlock See vce6771 (requires customer login)
Dell EMC Unity Monitor Knowledge Baste Article 194414 for advisory publication: https://www.dell.com/support/kbdoc/en-uk/000194414/dell-response-to-apache-log4j-remote-code-execution-vulnerability
Dell EMC RecoverPoint for Virtual Machines DSA-2021-284

 Note: Dell EMC RecoverPoint for Virtual Machines plugin is not impacted by this advisory, all packages Update 1 through 8 are covered.
Enterprise Hybrid Cloud 4.1.2 workflows is not impacted by this advisory, including packages Update 1 through 8.

Monitor the following advisories and apply workaround guidance and remediations as they become available:
 
CVE Addressed Products Link to Update
CVE-2021-44228 VMware vCenter Server Appliance VMSA-2021-0028.3
VMware vRealize Automation 7.x
VMware vRealize Orchestrator 7.x
VMware NSX for Data Center for vSphere 6.x
VMware vRealize Log Insight 8.x
VMware vRealize Business for Cloud 7.x
Dell EMC Data Domain OS DSA-2021-274
 
Dell EMC Avamar DSA-2021-277
Dell EMC VxRail DSA-2021-265
VxBlock See vce6771 (requires customer login)
Dell EMC Unity Monitor Knowledge Baste Article 194414 for advisory publication: https://www.dell.com/support/kbdoc/en-uk/000194414/dell-response-to-apache-log4j-remote-code-execution-vulnerability
Dell EMC RecoverPoint for Virtual Machines DSA-2021-284

 Note: Dell EMC RecoverPoint for Virtual Machines plugin is not impacted by this advisory, all packages Update 1 through 8 are covered.

Løsninger og afhjælpninger

Follow workaround and mitigation information in articles and advisories linked in the Affected Products and Remediation section.

Revisionshistorik

RevisionDateDescription
1.02021-12-14Initial Release
1.12021-12-17Updated Content

Relaterede oplysninger

Berørte produkter

Enterprise Hybrid Cloud, Enterprise Hybrid Cloud

Produkter

Product Security Information
Artikelegenskaber
Artikelnummer: 000194490
Artikeltype: Dell Security Advisory
Senest ændret: 19 sep. 2025
Find svar på dine spørgsmål fra andre Dell-brugere
Supportservices
Kontrollér, om din enhed er dækket af supportservices.