Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Enjoy members-only rewards and discounts
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.

Article Number: 000221912


DSA-2024-047 : Security Update for Dell SmartFabric Storage Software Vulnerabilities.

Summary: Dell SmartFabric Storage Software remediation is available for Multiple Security Vulnerabilities that could be exploited by malicious users to compromise the affected system.

Article Content


Impact

Critical

Details

Third-party Component  CVEs  More Information 
OpenSSH CVE-2023-38408, CVE-2023-41617, CVE-2023-48795, CVE-2023-51385 See nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies.for details
ncurses CVE-2023-29491 See nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies.for details
golang.org/x/sys CVE-2022-29526 See nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies.for details
golang.org/x/text CVE-2022-32149 See nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies.for details
golang.org.x.et CVE-2023-39325, CVE-2023-3978, CVE-2023-44487 See nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies.for details
golang.or/x/net CVE-2023-39325, CVE-2023-3978, CVE-2023-44487, CVE-2021-33194, CVE-2022-27664, CVE-2022-41723, CVE-2021-31525 See nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies.for details
golang.org/rpc CVE-2023-44487,GHSA-m425-mq94-257g See nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies.for details,
See GitHub Security AdvisoryThis hyperlink is taking you to a website outside of Dell Technologies.
mariadb CVE-2022-47015

 
See nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies.for details
Linux kernel CVE-2023-1989, CVE-2023-35827, CVE-2023-4244, CVE-2023-42753, CVE-2023-45871, CVE-2023-4622, CVE-2023-4623, CVE-2023-46813, CVE-2023-4921, CVE-2023-5178, CVE-2023-5717, CVE-2023-6176, CVE-2023-6531, CVE-2023-6817, CVE-2023-6932, CVE-2021-44879, CVE-2023-20588, CVE-2023-34324, CVE-2023-37453, CVE-2023-3772, CVE-2023-3773, CVE-2023-39189, CVE-2023-39192, CVE-2023-39194, CVE-2023-42754, CVE-2023-42755, CVE-2023-42756, CVE-2023-45863, CVE-2023-46862, CVE-2023-5197, CVE-2023-6121, CVE-2024-0193, CVE-2023-51780, CVE-2023-51781, CVE-2023-51782 See nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies.for details
glibc CVE-2023-4911 See nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies.for details
runc CVE-2022-29162 See nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies.for details
bind CVE-2023-3341 See nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies.for details
openssl CVE-2023-3446, CVE-2023-3817
 
See nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies.for details
dbus CVE-2023-34969 See nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies.for details
krb5 CVE-2023-36054
 
See nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies.for details
cURL CVE-2023-38545, CVE-2023-27533, CVE-2023-27534, CVE-2023-27535, CVE-2023-27536, CVE-2023-27538, CVE-2023-28321, CVE-2023-38546 See nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies.for details
exim4 CVE-2023-42115, CVE-2023-42116, CVE-2023-51766, CVE-2023-42114


 
See nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies.for details,
See Debian Security TrackerThis hyperlink is taking you to a website outside of Dell Technologies. for details
libx11-6 CVE-2023-43787, CVE-2023-43785, CVE-2023-43786 See nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies.for details
libxpm4 CVE-2023-43788, CVE-2023-43789 See nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies.for details
libnghttp2-14 CVE-2023-44487 See nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies.for details
libwebp6 CVE-2023-4863 See nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies.for details
paramiko
CVE-2023-48795
See nvd.nist.govThis hyperlink is taking you to a website outside of Dell Technologies.for details

Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.

Affected Products and Remediation

CVEs Addressed  Product  Affected Versions  Remediated Versions  Link 
CVE-2023-38408, CVE-2023-41617, CVE-2023-48795, CVE-2023-51385 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-29491 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2022-29526 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2022-32149 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-39325, CVE-2023-3978, CVE-2023-44487 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-39325, CVE-2023-3978, CVE-2023-44487, CVE-2021-33194, CVE-2022-27664, CVE-2022-41723, CVE-2021-31525 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-44487,GHSA-m425-mq94-257g  SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2022-47015

 
SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-1989, CVE-2023-35827, CVE-2023-4244, CVE-2023-42753, CVE-2023-45871, CVE-2023-4622, CVE-2023-4623, CVE-2023-46813, CVE-2023-4921, CVE-2023-5178, CVE-2023-5717, CVE-2023-6176, CVE-2023-6531, CVE-2023-6817, CVE-2023-6932, CVE-2021-44879, CVE-2023-20588, CVE-2023-34324, CVE-2023-37453, CVE-2023-3772, CVE-2023-3773, CVE-2023-39189, CVE-2023-39192, CVE-2023-39194, CVE-2023-42754, CVE-2023-42755, CVE-2023-42756, CVE-2023-45863, CVE-2023-46862, CVE-2023-5197, CVE-2023-6121, CVE-2024-0193, CVE-2023-51780, CVE-2023-51781, CVE-2023-51782 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-4911 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2022-29162 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-3341 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-3446, CVE-2023-3817
 
SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-34969 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-36054
 
SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-38545, CVE-2023-27533, CVE-2023-27534, CVE-2023-27535, CVE-2023-27536, CVE-2023-27538, CVE-2023-28321, CVE-2023-38546 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-42115, CVE-2023-42116, CVE-2023-51766, CVE-2023-42114

 
SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-43787, CVE-2023-43785, CVE-2023-43786 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-43788, CVE-2023-43789 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-44487 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-4863 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download

CVE-2023-48795
SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVEs Addressed  Product  Affected Versions  Remediated Versions  Link 
CVE-2023-38408, CVE-2023-41617, CVE-2023-48795, CVE-2023-51385 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-29491 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2022-29526 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2022-32149 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-39325, CVE-2023-3978, CVE-2023-44487 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-39325, CVE-2023-3978, CVE-2023-44487, CVE-2021-33194, CVE-2022-27664, CVE-2022-41723, CVE-2021-31525 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-44487,GHSA-m425-mq94-257g  SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2022-47015

 
SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-1989, CVE-2023-35827, CVE-2023-4244, CVE-2023-42753, CVE-2023-45871, CVE-2023-4622, CVE-2023-4623, CVE-2023-46813, CVE-2023-4921, CVE-2023-5178, CVE-2023-5717, CVE-2023-6176, CVE-2023-6531, CVE-2023-6817, CVE-2023-6932, CVE-2021-44879, CVE-2023-20588, CVE-2023-34324, CVE-2023-37453, CVE-2023-3772, CVE-2023-3773, CVE-2023-39189, CVE-2023-39192, CVE-2023-39194, CVE-2023-42754, CVE-2023-42755, CVE-2023-42756, CVE-2023-45863, CVE-2023-46862, CVE-2023-5197, CVE-2023-6121, CVE-2024-0193, CVE-2023-51780, CVE-2023-51781, CVE-2023-51782 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-4911 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2022-29162 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-3341 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-3446, CVE-2023-3817
 
SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-34969 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-36054
 
SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-38545, CVE-2023-27533, CVE-2023-27534, CVE-2023-27535, CVE-2023-27536, CVE-2023-27538, CVE-2023-28321, CVE-2023-38546 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-42115, CVE-2023-42116, CVE-2023-51766, CVE-2023-42114

 
SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-43787, CVE-2023-43785, CVE-2023-43786 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-43788, CVE-2023-43789 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-44487 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download
CVE-2023-4863 SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download

CVE-2023-48795
SmartFabric Storage Software  Prior to 1.4.2  1.4.2 SmartFabric Storage Software Download

Workarounds and Mitigations

None

Revision History

Revision DateDescription
1.02024-02-07Initial Release
2.02024-02-15Updating the title to reflect year 2024

Related Information


Article Properties


Affected Product

SmartFabric Storage Software Download for NVMe/TCP SAN

Last Published Date

15 Feb 2024

Version

2

Article Type

Dell Security Advisory