DSA-2024-379: Security Update for Dell iDRAC Service Module 7-Zip Vulnerability
Oversigt: Dell iDRAC Service Module remediation is available for a 7-Zip vulnerability that could be exploited by malicious users to compromise the affected system.
Denne artikel gælder for
Denne artikel gælder ikke for
Denne artikel er ikke knyttet til et bestemt produkt.
Det er ikke alle produktversioner, der er identificeret i denne artikel.
Virkning
High
Oplysninger
| Third-party Component | CVEs | More Information |
|---|---|---|
| 7-Zip | CVE-2023-31102, CVE-2023-40481 | See NVD link below for individual scores for each CVE. http://nvd.nist.gov/ |
Berørte produkter og udbedring
| Product | Software/Firmware | Affected Versions | Remediated Versions | Link |
|---|---|---|---|---|
| iDRAC Service Module (Windows) | 7-Zip | Versions 4.3.0.0, 5.2.0.0, 5.3.0.0, and 5.3.1.0 | Hotfix 306929, A00 | https://www.dell.com/support/home/en-us/drivers/DriversDetails?driverid=M12VN |
| iDRAC Service Module (Linux) | 7-Zip | Versions 4.3.0.0, 5.2.0.0, 5.3.0.0, and 5.3.1.0 | Hotfix 306929, A00 | https://www.dell.com/support/home/en-us/drivers/DriversDetails?driverid=TPH56 |
| iDRAC Service Module (VIB) for ESXi 7.0 U3 | 7-Zip | Versions 5.2.0.0, 5.3.0.0, and 5.3.1.0 | 5.3.1.2, A00 | https://www.dell.com/support/home/en-us/drivers/DriversDetails?driverid=251YH |
| Product | Software/Firmware | Affected Versions | Remediated Versions | Link |
|---|---|---|---|---|
| iDRAC Service Module (Windows) | 7-Zip | Versions 4.3.0.0, 5.2.0.0, 5.3.0.0, and 5.3.1.0 | Hotfix 306929, A00 | https://www.dell.com/support/home/en-us/drivers/DriversDetails?driverid=M12VN |
| iDRAC Service Module (Linux) | 7-Zip | Versions 4.3.0.0, 5.2.0.0, 5.3.0.0, and 5.3.1.0 | Hotfix 306929, A00 | https://www.dell.com/support/home/en-us/drivers/DriversDetails?driverid=TPH56 |
| iDRAC Service Module (VIB) for ESXi 7.0 U3 | 7-Zip | Versions 5.2.0.0, 5.3.0.0, and 5.3.1.0 | 5.3.1.2, A00 | https://www.dell.com/support/home/en-us/drivers/DriversDetails?driverid=251YH |
- Remediation for 4.3.0.0 is only available for Windows and Linux platforms.
Revisionshistorik
| Revision | Date | Description |
|---|---|---|
| 1.0 | 2024-09-03 | Initial Release |
| 2.0 | 2024-09-26 | Added 4.3.0.0 to affected versions for Windows and Linux |
Relaterede oplysninger
Ansvarsfraskrivelse
Berørte produkter
iDRAC Service ModuleArtikelegenskaber
Artikelnummer: 000228289
Artikeltype: Dell Security Advisory
Senest ændret: 26 sep. 2024
Find svar på dine spørgsmål fra andre Dell-brugere
Supportservices
Kontrollér, om din enhed er dækket af supportservices.