DSA-2024-432: Dell PowerStore X Security Update for Multiple Vulnerabilities
Summary: Dell PowerStore Family remediation is available for multiple security vulnerabilities that may be exploited by malicious users to compromise the affected system.
Impact
High
Details
|
Third-party Component |
CVEs |
More Information |
|
cpio |
CVE-2023-7207 |
See NVD link below for individual scores for each CVE. |
|
docker |
CVE-2024-23651, CVE-2024-23653, CVE-2024-23652 |
See NVD link below for individual scores for each CVE.
|
|
gnutls |
CVE-2024-0553, CVE-2023-5981 |
See NVD link below for individual scores for each CVE.
|
|
krb5 |
CVE-2024-26458, CVE-2024-26461 |
See NVD link below for individual scores for each CVE. |
|
less |
CVE-2024-32487 |
See NVD link below for individual scores for each CVE.
|
|
libssh |
CVE-2020-1730, CVE-2023-6918, CVE-2023-1667, CVE-2023-48795, CVE-2023-6004, CVE-2020-16135, CVE-2019-14889, CVE-2023-2283, CVE-2021-3634 |
See NVD link below for individual scores for each CVE.
|
|
libxml2 |
CVE-2024-25062 |
See NVD link below for individual scores for each CVE. |
|
module-tools |
CVE-2023-1829, CVE-2023-23559 |
See NVD link below for individual scores for each CVE. |
|
nghttp2 |
CVE-2024-28182 |
See NVD link below for individual scores for each CVE. |
|
nss |
CVE-2023-5388 |
See NVD link below for individual scores for each CVE. |
|
OpenJDK |
CVE-2024-20952, CVE-2024-20918, CVE-2024-20921, CVE-2024-20919, CVE-2024-20926, CVE-2024-20945, CVE-2024-21094, CVE-2024-21012, CVE-2024-21068, CVE-2024-21011, CVE-2024-21085, CVE-2024-20952, CVE-2024-20918, CVE-2024-20921, CVE-2024-20919, CVE-2024-20926, CVE-2024-20945, CVE-2024-21094, CVE-2024-21012, CVE-2024-21068, CVE-2024-21011, CVE-2024-21085, CVE-2024-20952, CVE-2024-20918, CVE-2024-20921, CVE-2024-20919, CVE-2024-20926, CVE-2024-20945, CVE-2024-21094, CVE-2024-21012, CVE-2024-21068, CVE-2024-21011, CVE-2024-21085 |
See NVD link below for individual scores for each CVE. |
|
OpenSSH |
CVE-2023-51385 |
See NVD link below for individual scores for each CVE. |
|
OpenSSL |
CVE-2024-2511 |
See NVD link below for individual scores for each CVE. |
|
pam |
CVE-2024-22365 |
See NVD link below for individual scores for each CVE. |
|
perl |
CVE-2018-6913, CVE-2017-6512, CVE-2018-6798, CVE-2023-31484 |
See NVD link below for individual scores for each CVE. |
|
postgresql |
CVE-2024-0985 |
See NVD link below for individual scores for each CVE. |
|
python |
CVE-2023-52425, CVE-2024-0450 |
See NVD link below for individual scores for each CVE. |
|
runc |
CVE-2024-21626 |
See NVD link below for individual scores for each CVE. |
|
sudo |
CVE-2023-42465 |
See NVD link below for individual scores for each CVE. |
|
util-linux |
CVE-2024-28085 |
See NVD link below for individual scores for each CVE. |
|
vim |
CVE-2023-4733, CVE-2023-4738, CVE-2023-4781, CVE-2023-5535, CVE-2023-4750, CVE-2023-4752, CVE-2024-22667, CVE-2023-5441, CVE-2023-5344, CVE-2023-46246, CVE-2023-48231, CVE-2023-48232, CVE-2023-48706, CVE-2023-4734, CVE-2023-4735, CVE-2023-48233, CVE-2023-48234, CVE-2023-48236, CVE-2023-48237, CVE-2023-48235, CVE-2023-4733, CVE-2023-4738, CVE-2023-4781, CVE-2023-5535, CVE-2023-4750, CVE-2023-4752, CVE-2024-22667, CVE-2023-5441, CVE-2023-5344, CVE-2023-46246, CVE-2023-48231, CVE-2023-48232, CVE-2023-48706, CVE-2023-4734 |
See NVD link below for individual scores for each CVE. |
|
xen-libs |
CVE-2023-46839 |
See NVD link below for individual scores for each CVE. |
Affected Products & Remediation
|
Product |
Software/Firmware |
Affected Versions |
Remediated Versions |
Link |
|
PowerStore 1000X |
PowerStoreX OS |
Versions prior to 3.2.1.4-2386214 |
Version 3.2.1.4-2386214 or later |
https://www.dell.com/support/home/product-support/product/powerstore-1000/drivers |
|
PowerStore 3000X |
PowerStoreX OS |
Versions prior to 3.2.1.4-2386214 |
Version 3.2.1.4-2386214 or later |
https://www.dell.com/support/home/product-support/product/powerstore-3000/drivers |
|
PowerStore 5000X |
PowerStoreX OS |
Versions prior to 3.2.1.4-2386214 |
Version 3.2.1.4-2386214 or later |
https://www.dell.com/support/home/product-support/product/powerstore-5000/drivers |
|
PowerStore 7000X |
PowerStoreX OS |
Versions prior to 3.2.1.4-2386214 |
Version 3.2.1.4-2386214 or later |
https://www.dell.com/support/home/product-support/product/powerstore-7000/drivers |
|
PowerStore 9000X |
PowerStoreX OS |
Versions prior to 3.2.1.4-2386214 |
Version 3.2.1.4-2386214 or later |
https://www.dell.com/support/home/product-support/product/powerstore-9000/drivers |
|
Product |
Software/Firmware |
Affected Versions |
Remediated Versions |
Link |
|
PowerStore 1000X |
PowerStoreX OS |
Versions prior to 3.2.1.4-2386214 |
Version 3.2.1.4-2386214 or later |
https://www.dell.com/support/home/product-support/product/powerstore-1000/drivers |
|
PowerStore 3000X |
PowerStoreX OS |
Versions prior to 3.2.1.4-2386214 |
Version 3.2.1.4-2386214 or later |
https://www.dell.com/support/home/product-support/product/powerstore-3000/drivers |
|
PowerStore 5000X |
PowerStoreX OS |
Versions prior to 3.2.1.4-2386214 |
Version 3.2.1.4-2386214 or later |
https://www.dell.com/support/home/product-support/product/powerstore-5000/drivers |
|
PowerStore 7000X |
PowerStoreX OS |
Versions prior to 3.2.1.4-2386214 |
Version 3.2.1.4-2386214 or later |
https://www.dell.com/support/home/product-support/product/powerstore-7000/drivers |
|
PowerStore 9000X |
PowerStoreX OS |
Versions prior to 3.2.1.4-2386214 |
Version 3.2.1.4-2386214 or later |
https://www.dell.com/support/home/product-support/product/powerstore-9000/drivers |
Workarounds & Mitigations
None
Revision History
| Revision | Date | Description |
| 1.0 | 2024-10-29 | Initial Release |
| 2.0 | 2025-02-10 | Added missing product category |
| 3.0 | 2025-02-11 | Added missing product category |