DSA-2025-008: Security Update for Dell Precision Rack for Intel Platform Update Advisories
Summary: Dell Client Platform remediation is available for multiple vulnerabilities in Intel Platform Update – 2025.1 advisories that could be exploited by malicious users to compromise the affected system. ...
Impact
Medium
Details
|
Third-Party Component |
CVEs |
More Information |
|
Intel Ethernet Adapter Complete Driver Pack |
CVE-2024-24852, CVE-2024-36274 |
|
|
2025.1 IPU - Intel SGX |
CVE-2024-36293 |
|
|
2025.1 IPU - UEFI Firmware |
CVE-2024-39279, CVE-2024-28047 |
|
|
Intel SPS Firmware |
CVE-2024-25571 |
|
|
UEFI Firmware |
CVE-2024-21859, CVE-2024-31155 |
|
|
Intel Data Streaming Accelerator |
CVE-2024-37020 |
|
|
2024.4 IPU, Intel Processor |
CVE-2024-31068 |
Affected Products & Remediation
|
CVEs Addressed |
Product |
Software/Firmware |
Affected Versions |
Remediated Versions |
Release Date (MM/DD/YYYY) |
Link |
|
CVE-2024-24852, CVE-2024-36274 |
Precision 7920 Rack |
Intel-I350-X550-X710-E810-Ethernet-Controller-Driver |
Versions prior to 24.3.0.0 |
Version 24.3.0.0 or later |
01/03/2025 |
Intel I350/X550/X710/E810 Ethernet Controller Driver | Driver Details |
|
CVE-2024-24852, CVE-2024-36274 |
7920 XL Rack |
Intel-I350-X550-X710-E810-Ethernet-Controller-Driver |
Versions prior to 24.3.0.0 |
Version 24.3.0.0 or later |
01/03/2025 |
Intel I350/X550/X710/E810 Ethernet Controller Driver | Driver Details |
|
CVE-2024-24852, CVE-2024-36274 |
Precision 7960 Rack |
Intel-I350-X550-X710-E810-Ethernet-Controller-Driver |
Versions prior to 24.3.0.0 |
Version 24.3.0.0 or later |
01/03/2025 |
Intel I350/X550/X710/E810 Ethernet Controller Driver | Driver Details |
|
CVE-2024-24852, CVE-2024-36274 |
Precision 7960 XL Rack |
Intel-I350-X550-X710-E810-Ethernet-Controller-Driver |
Versions prior to 24.3.0.0 |
Version 24.3.0.0 or later |
01/03/2025 |
Intel I350/X550/X710/E810 Ethernet Controller Driver | Driver Details |
|
CVE-2024-36293, CVE-2024-39279, CVE-2024-28047 |
Precision 7920 Rack |
BIOS |
Versions prior to 2.23.0 |
Version 2.23.0 or later |
02/18/2024 |
|
|
CVE-2024-36293, CVE-2024-39279, CVE-2024-28047 |
7920 XL Rack |
BIOS |
Versions prior to 2.23.0 |
Version 2.23.0 or later |
02/18/2024 |
|
|
CVE-2024-25571, CVE-2024-21859, CVE-2024-31155, CVE-2024-37020, CVE-2024-36293, CVE-2024-39279, CVE-2024-31068 |
Precision 7960 Rack |
BIOS |
Versions prior to 2.5.4 |
Version 2.5.4 or later |
03/28/2025 |
|
|
CVE-2024-25571, CVE-2024-21859, CVE-2024-31155, CVE-2024-37020, CVE-2024-36293, CVE-2024-39279, CVE-2024-31068 |
Precision 7960 XL Rack |
BIOS |
Versions prior to 2.5.4 |
Version 2.5.4 or later |
03/28/2025 |
|
CVEs Addressed |
Product |
Software/Firmware |
Affected Versions |
Remediated Versions |
Release Date (MM/DD/YYYY) |
Link |
|
CVE-2024-24852, CVE-2024-36274 |
Precision 7920 Rack |
Intel-I350-X550-X710-E810-Ethernet-Controller-Driver |
Versions prior to 24.3.0.0 |
Version 24.3.0.0 or later |
01/03/2025 |
Intel I350/X550/X710/E810 Ethernet Controller Driver | Driver Details |
|
CVE-2024-24852, CVE-2024-36274 |
7920 XL Rack |
Intel-I350-X550-X710-E810-Ethernet-Controller-Driver |
Versions prior to 24.3.0.0 |
Version 24.3.0.0 or later |
01/03/2025 |
Intel I350/X550/X710/E810 Ethernet Controller Driver | Driver Details |
|
CVE-2024-24852, CVE-2024-36274 |
Precision 7960 Rack |
Intel-I350-X550-X710-E810-Ethernet-Controller-Driver |
Versions prior to 24.3.0.0 |
Version 24.3.0.0 or later |
01/03/2025 |
Intel I350/X550/X710/E810 Ethernet Controller Driver | Driver Details |
|
CVE-2024-24852, CVE-2024-36274 |
Precision 7960 XL Rack |
Intel-I350-X550-X710-E810-Ethernet-Controller-Driver |
Versions prior to 24.3.0.0 |
Version 24.3.0.0 or later |
01/03/2025 |
Intel I350/X550/X710/E810 Ethernet Controller Driver | Driver Details |
|
CVE-2024-36293, CVE-2024-39279, CVE-2024-28047 |
Precision 7920 Rack |
BIOS |
Versions prior to 2.23.0 |
Version 2.23.0 or later |
02/18/2024 |
|
|
CVE-2024-36293, CVE-2024-39279, CVE-2024-28047 |
7920 XL Rack |
BIOS |
Versions prior to 2.23.0 |
Version 2.23.0 or later |
02/18/2024 |
|
|
CVE-2024-25571, CVE-2024-21859, CVE-2024-31155, CVE-2024-37020, CVE-2024-36293, CVE-2024-39279, CVE-2024-31068 |
Precision 7960 Rack |
BIOS |
Versions prior to 2.5.4 |
Version 2.5.4 or later |
03/28/2025 |
|
|
CVE-2024-25571, CVE-2024-21859, CVE-2024-31155, CVE-2024-37020, CVE-2024-36293, CVE-2024-39279, CVE-2024-31068 |
Precision 7960 XL Rack |
BIOS |
Versions prior to 2.5.4 |
Version 2.5.4 or later |
03/28/2025 |
Workarounds & Mitigations
None
Revision History
|
Revision |
Date |
Description |
|
1.0 |
2025-02-11 |
Initial Release |
|
2.0 |
2025-02-24 |
Updated Affected Products and Remediation section: Platform list updated Updated Third Party Components table: Added INTEL-SA-01213 and INTEL-SA-01139 (CVE-2024-36293, CVE-2024-39279, CVE-2024-28047) |
|
3.0 |
2025-04-09 |
Updated Affected Products and Remediation section: Platform list updated with Precision 7960 Rack details for BIOS Updated Third Party Components Table: Added INTEL-SA-01120, INTEL-SA-01198, INTEL-SA-01194, INTEL-SA-01166 |