DSA-2025-164: Security Update for Dell VxFlex Ready Node and PowerFlex Custom Node Multiple Third-Party Component Vulnerabilities

Oversigt: Dell VxFlex Ready Node and PowerFlex Custom Node remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system. ...

Denne artikel gælder for Denne artikel gælder ikke for Denne artikel er ikke knyttet til et bestemt produkt. Det er ikke alle produktversioner, der er identificeret i denne artikel.

Virkning

High

Oplysninger

Third-party Component

CVEs

More Information

Dell PowerEdge Server BIOS

CVE-2024-21853, CVE-2024-21944, CVE-2024-27457, CVE-2023-31342, CVE-2023-31343, CVE-2023-31345, CVE-2024-21924, CVE-2024-21925, CVE-2023-20582, CVE-2023-20581

DSA-2024-383, DSA-2024-404, DSA-2024-385, DSA-2025-085

iDRAC

CVE-2023-52340, CVE-2024-42154, CVE-2026-26948

DSA-2024-460, DSA-2026-113

Intel Adapters 

CVE-2024-24852, CVE-2024-36274

DSA-2025-042

 

Dell Technologies anbefaler, at alle kunder tager hensyn til både CVSS-basisresultatet og alle relevante tidsmæssige og miljømæssige resultater, som kan have betydning for den potentielle alvorsgrad, der er forbundet med en bestemt sikkerhedsrisiko.

Berørte produkter og udbedring

Product

Software/Firmware

Affected Versions

Remediated Versions

Link

VxFlex Ready Node

Dell PowerEdge BIOS –14G R640, R740, R840

 

Versions prior to 2.22.2

Version 2.22.2 or later

Downloads (in case of upgrade using OME)

PowerFlex Custom Node

Dell PowerEdge BIOS –15G R650 and R750

Versions prior to 1.15.2

Version 1.15.2 or later

Downloads (in case of upgrade using OME)

PowerFlex Custom Node

Dell PowerEdge BIOS –15G AMD R6525

Versions prior to 2.17.4

Version 2.17.4 or later

Downloads (in case of upgrade using OME)

PowerFlex Custom Node

Dell PowerEdge BIOS –16G R660 and R760

Versions prior to 2.4.4

Version 2.4.4 or later

Downloads (in case of upgrade using OME)

PowerFlex Custom Node

Dell PowerEdge BIOS –16G AMD R6625 and R7625

Versions prior to 1.10.6

Version 1.10.6 or later

Downloads (in case of upgrade using OME)

 

Product

Software/Firmware

Affected Versions

Remediated Versions

Link

VxFlex Ready Node

Dell PowerEdge BIOS –14G R640, R740, R840

 

Versions prior to 2.22.2

Version 2.22.2 or later

Downloads (in case of upgrade using OME)

PowerFlex Custom Node

Dell PowerEdge BIOS –15G R650 and R750

Versions prior to 1.15.2

Version 1.15.2 or later

Downloads (in case of upgrade using OME)

PowerFlex Custom Node

Dell PowerEdge BIOS –15G AMD R6525

Versions prior to 2.17.4

Version 2.17.4 or later

Downloads (in case of upgrade using OME)

PowerFlex Custom Node

Dell PowerEdge BIOS –16G R660 and R760

Versions prior to 2.4.4

Version 2.4.4 or later

Downloads (in case of upgrade using OME)

PowerFlex Custom Node

Dell PowerEdge BIOS –16G AMD R6625 and R7625

Versions prior to 1.10.6

Version 1.10.6 or later

Downloads (in case of upgrade using OME)

 

In the case of manual upgrade for VxFlex Ready Note, please see this link: https://www.dell.com/support/home/en-us/product-support/product/scaleio-ready-node--poweredge-14g/docs

In the case of manual upgrade for PowerFlex custom node, please see this link: https://www.dell.com/support/home/product-support/product/powerflex-custom-node/docs

Revisionshistorik

RevisionDateDescription
1.02024-04-03Initial Release
2.02026-03-18Added details for CVE-2026-26948  

Relaterede oplysninger

Berørte produkter

VxFlex Ready Nodes, PowerFlex custom node, ScaleIO, PowerFlex custom node, PowerFlex custom node R650, PowerFlex custom node R6525, PowerFlex custom node R660, PowerFlex custom node R6625, PowerFlex custom node R750, PowerFlex custom node R760 , PowerFlex custom node R7625, PowerFlex custom node R860, VxFlex Ready Node, VxFlex Ready Node R640, VxFlex Ready Node R740xd, VxFlex Ready Node R840 ...
Artikelegenskaber
Artikelnummer: 000303519
Artikeltype: Dell Security Advisory
Senest ændret: 17 mar. 2026
Find svar på dine spørgsmål fra andre Dell-brugere
Supportservices
Kontrollér, om din enhed er dækket af supportservices.