DSA-2023-317: Security Update for Dell NetWorker vProxy multiple linux packages vulnerabilities

Zusammenfassung: Dell NetWorker vProxy remediation is available for multiple linux packages that could be exploited by malicious users to compromise the affected system.

Dieser Artikel gilt für Dieser Artikel gilt nicht für Dieser Artikel ist nicht an ein bestimmtes Produkt gebunden. In diesem Artikel werden nicht alle Produktversionen aufgeführt.

Auswirkungen

High

Details

Third-party Component CVEs More Information
glib2 CVE-2023-24593, CVE-2023-25180 See NVD link below for individual scores for each CVE. 
http://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.
dmidecode CVE-2023-30630 See NVD link below for individual scores for each CVE. 
http://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.
libxml2 CVE-2023-28484, CVE-2023-29469 See NVD link below for individual scores for each CVE. 
http://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.
git CVE-2023-25652, CVE-2023-25815, CVE-2023-29007 See NVD link below for individual scores for each CVE. 
http://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.
shadow CVE-2023-29383 See NVD link below for individual scores for each CVE. 
http://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.
ncurses CVE-2023-29491 See NVD link below for individual scores for each CVE. 
http://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.
kernel CVE-2020-36691, CVE-2022-43945, CVE-2023-1611, CVE-2023-1670, CVE-2023-1855, CVE-2023-1989, CVE-2023-1990, CVE-2023-1998, CVE-2023-2124, CVE-2023-2162, CVE-2023-2483, CVE-2023-30772 See NVD link below for individual scores for each CVE. 
http://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.
ntp CVE-2023-26551, CVE-2023-26552, CVE-2023-26553, CVE-2023-26554 See NVD link below for individual scores for each CVE. 
http://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.
ucode-intel CVE-2022-33972 See NVD link below for individual scores for each CVE. 
http://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.
openssl-1_0_0 CVE-2023-2650 See NVD link below for individual scores for each CVE. 
http://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.
supportutils CVE-2022-45154 See NVD link below for individual scores for each CVE. 
http://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.

Dell Technologies empfiehlt allen Kunden, sowohl die CVSS-Gesamtbewertung als auch alle relevanten zeitlichen und umweltbezogenen Bewertungen zu berücksichtigen, die sich auf den potenziellen Schweregrad einer bestimmten Sicherheitsschwachstelle auswirken können.

Betroffene Produkte und Korrektur

Product Software/Firmware Affected Versions Remediated Versions Link
Dell NetWorker vProxy  vProxy Appliance Versions 19.9, 19.9.0.1 Version 19.9.0.2 https://www.dell.com/support/home/product-support/product/networker/drivers
Dell NetWorker vProxy  vProxy Appliance Versions 19.8 through 19.8.0.2 Version 19.8.0.3 https://www.dell.com/support/home/product-support/product/networker/drivers
Dell NetWorker vProxy  vProxy Appliance Versions 19.7 through 19.7.0.5 Version 19.9.0.2 https://www.dell.com/support/home/product-support/product/networker/drivers
Dell NetWorker vProxy  vProxy Appliance Version 19.7.1 Version 19.9.0.2 https://www.dell.com/support/home/product-support/product/networker/drivers
Dell NetWorker vProxy  vProxy Appliance Versions prior to 19.7 Version 19.9.0.2 https://www.dell.com/support/home/product-support/product/networker/drivers
Product Software/Firmware Affected Versions Remediated Versions Link
Dell NetWorker vProxy  vProxy Appliance Versions 19.9, 19.9.0.1 Version 19.9.0.2 https://www.dell.com/support/home/product-support/product/networker/drivers
Dell NetWorker vProxy  vProxy Appliance Versions 19.8 through 19.8.0.2 Version 19.8.0.3 https://www.dell.com/support/home/product-support/product/networker/drivers
Dell NetWorker vProxy  vProxy Appliance Versions 19.7 through 19.7.0.5 Version 19.9.0.2 https://www.dell.com/support/home/product-support/product/networker/drivers
Dell NetWorker vProxy  vProxy Appliance Version 19.7.1 Version 19.9.0.2 https://www.dell.com/support/home/product-support/product/networker/drivers
Dell NetWorker vProxy  vProxy Appliance Versions prior to 19.7 Version 19.9.0.2 https://www.dell.com/support/home/product-support/product/networker/drivers
The Affected Products and Remediation table above may not be a comprehensive list of all affected supported versions and may be updated as more information becomes available.
  1. Platforms: vProxy is built upon SUSE based Linux operating system. So it supports only Linux platform.
  2. Please refer to the installation version NetWorker 19.8.0.3 vProxy OVA under the Download list on https://www.dell.com/support/home/product-support/product/networker/drivers with the Description as Linux SLES12 SP5 (64-bit). NetWorker vProxy virtual appliance. Version 4.3.0-47.ova
  3. Please refer to the installation version NetWorker 19.9.0.2 vProxy OVA under the Download list on https://www.dell.com/support/home/product-support/product/networker/drivers with the Description as Linux SLES12 SP5 (64-bit). NetWorker vProxy virtual appliance. Version 4.3.0-49.ova
  4. Versions prior to 19.7 means versions 19.6.x, 19.5.x, 19.4.x family of releases that are still under standard support. For more information on Dell End-of-Life Documents for converged infrastructure, midrange and enterprise storage, and storage networking products kindly refer to: https://www.dell.com/support/kbdoc/000185734/all-dell-emc-end-of-life-documents?lang=en
  5. Unless specified as impacted, the term “later releases” encompasses all NetWorker releases, under standard support, that are of a higher minor or major version than the specified release.
  6. Dell recommends that you always upgrade to the latest release/version for your product

Revisionsverlauf

RevisionDateDescription
1.02023-11-02Initial Release

Zugehörige Informationen

Betroffene Produkte

NetWorker Family, NetWorker, NetWorker Series, NetWorker Module, Product Security Information
Artikeleigenschaften
Artikelnummer: 000219148
Artikeltyp: Dell Security Advisory
Zuletzt geändert: 09 Sept. 2025
Antworten auf Ihre Fragen erhalten Sie von anderen Dell NutzerInnen
Support Services
Prüfen Sie, ob Ihr Gerät durch Support Services abgedeckt ist.