Skip to main content

DSA-2024-406: Security Update for Dell Secure Connect Gateway Policy Manager Multiple Vulnerabilities

Summary: Dell Secure Connect Gateway contains remediation for multiple vulnerabilities that could be exploited by malicious users to compromise the affected system.

This article applies to This article does not apply to This article is not tied to any specific product. Not all product versions are identified in this article.

Impact

Critical

Details

Third-Party Component CVEs More information
Java CVE-2024-21131, CVE-2024-21138, CVE-2024-21140, CVE-2024-21145, CVE-2024-21147, CVE-2024-21144, CVE-2024-27983 See NVD link below for individual scores for each CVE https://nvd.nist.gov This hyperlink is taking you to a website outside of Dell Technologies.
SUSE Enterprise 12 SP5 CVE-2024-7264. CVE-2024-41110 See NVD link below for individual scores for each CVE https://nvd.nist.gov This hyperlink is taking you to a website outside of Dell Technologies. 

Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.

Affected Products & Remediation

CVEs Addressed Product Affected Versions Updated Version Link to Update
CVE-2024-7264, CVE-2024-21131, CVE-2024-21138, CVE-2024-21140, CVE-2024-21145, CVE-2024-21147, CVE-2024-21144, CVE-2024-27983, CVE-2024-41110 Dell Policy Manager for Secure Connect Gateway Version 5.24.00.14 Version 5.26.00.16 or later

https://www.dell.com/support/home/product-support/product/secure-connect-gateway-ve/drivers

 

CVEs Addressed Product Affected Versions Updated Versions Link to Update
CVE-2024-7264, CVE-2024-21131, CVE-2024-21138, CVE-2024-21140, CVE-2024-21145, CVE-2024-21147, CVE-2024-21144, CVE-2024-27983, CVE-2024-41110 Dell Policy Manager for Secure Connect Gateway Version 5.24.00.14 Version 5.26.00.16 or later https://www.dell.com/support/home/product-support/product/secure-connect-gateway-ve/drivers
CVEs Addressed Product Affected Versions Updated Version Link to Update
CVE-2024-7264, CVE-2024-21131, CVE-2024-21138, CVE-2024-21140, CVE-2024-21145, CVE-2024-21147, CVE-2024-21144, CVE-2024-27983, CVE-2024-41110 Dell Policy Manager for Secure Connect Gateway Version 5.24.00.14 Version 5.26.00.16 or later

https://www.dell.com/support/home/product-support/product/secure-connect-gateway-ve/drivers

 

CVEs Addressed Product Affected Versions Updated Versions Link to Update
CVE-2024-7264, CVE-2024-21131, CVE-2024-21138, CVE-2024-21140, CVE-2024-21145, CVE-2024-21147, CVE-2024-21144, CVE-2024-27983, CVE-2024-41110 Dell Policy Manager for Secure Connect Gateway Version 5.24.00.14 Version 5.26.00.16 or later https://www.dell.com/support/home/product-support/product/secure-connect-gateway-ve/drivers

Revision History

RevisionDateDescription
1.02024-10-17Initial Release
2.02024-11-27Adjusted the font for the impacted CVE

Related Information

Affected Products

Secure Connect Gateway - Application Edition, Secure Connect Gateway - Virtual Edition
Article Properties
Article Number: 000236839
Article Type: Dell Security Advisory
Last Modified: 27 Nov 2024
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.