DSA-2021-297: Dell EMC Streaming Data Platform Security Update for Apache Log4j Remote Code Execution Vulnerability
Zusammenfassung: Dell EMC Streaming Data Platform remediation is available for the Apache Log4j Remote Code Execution Vulnerability that may be exploited by malicious users to compromise the affected system. Dell recommends implementing this remediation as soon as possible in light of the critical severity of the vulnerability. ...
Dieser Artikel gilt für
Dieser Artikel gilt nicht für
Dieser Artikel ist nicht an ein bestimmtes Produkt gebunden.
In diesem Artikel werden nicht alle Produktversionen aufgeführt.
Auswirkungen
Critical
Details
| Third-Party Component | CVEs | More information |
| Apache Log4j | CVE-2021-44228 | Apache Log4j Remote Code Execution |
| CVE-2021-45046 | ||
| CVE-2021-45105 | ||
| CVE-2021-44832 |
Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.
| Third-Party Component | CVEs | More information |
| Apache Log4j | CVE-2021-44228 | Apache Log4j Remote Code Execution |
| CVE-2021-45046 | ||
| CVE-2021-45105 | ||
| CVE-2021-44832 |
Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.
Betroffene Produkte und Korrektur
|
Note: Dell EMC Streaming Data Platform (SDP) has remediated CVE-2021-44228, CVE-2021-45046 in version 1.3.1 and later. Although CVE-2021-45105, CVE-2021-44832 were not exploitable in SDP, Apache Log4j is upgraded to 2.17.1 in SDP 1.3.1.1
|
Note: Dell EMC Streaming Data Platform (SDP) has remediated CVE-2021-44228, CVE-2021-45046 in version 1.3.1 and later. Although CVE-2021-45105, CVE-2021-44832 were not exploitable in SDP, Apache Log4j is upgraded to 2.17.1 in SDP 1.3.1.1
Revisionsverlauf
| Revision | Date | Description |
| 1.0 | 2021-12-16 | Initial Release |
| 1.1 | 2021-12-17 | Updated the SDP 1.3.1 download link |
| 1.2 | 2022-01-19 | Added version 1.3.1.1 and additional CVE-2021-45105, CVE-2021-44832 |
Zugehörige Informationen
Rechtlicher Hinweis
Betroffene Produkte
Streaming Data PlatformProdukte
Streaming Data Platform FamilyArtikeleigenschaften
Artikelnummer: 000194627
Artikeltyp: Dell Security Advisory
Zuletzt geändert: 05 Nov. 2025
Antworten auf Ihre Fragen erhalten Sie von anderen Dell NutzerInnen
Support Services
Prüfen Sie, ob Ihr Gerät durch Support Services abgedeckt ist.