Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.
Some article numbers may have changed. If this isn't what you're looking for, try searching all articles. Search articles

Article Number: 000195106


DSA-2021-288: Dell EMC NetWorker Security Update for Multiple Third-Party Vulnerabilities

Summary: Dell EMC NetWorker remediation is available for multiple security vulnerabilities that may be exploited by malicious users to compromise the affected system.

Article Content


Impact

Critical

Details

Third-party Component CVEs More Information
Apache Tomcat CVE-2021-33037 See NVD (http://nvd.nist.gov/) for individual scores for each CVE
Apache HTTP CVE-2021-34798
CVE-2021-39275
Third-party Component CVEs More Information
Apache Tomcat CVE-2021-33037 See NVD (http://nvd.nist.gov/) for individual scores for each CVE
Apache HTTP CVE-2021-34798
CVE-2021-39275
Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.

Affected Products and Remediation

Product Affected Versions Updated Versions Link to Update
Dell EMC NetWorker 19.1.x Dell EMC NetWorker 19.5.0.4, 19.6.0 and later https://www.dell.com/support/home/en-in/product-support/product/networker/drivers
19.2.x
19.3.x
19.4.x
19.5.x

Note: Only NetWorker Management Console Server and NetWorker Authentication Server components are impacted by these third-party vulnerabilities.
Product Affected Versions Updated Versions Link to Update
Dell EMC NetWorker 19.1.x Dell EMC NetWorker 19.5.0.4, 19.6.0 and later https://www.dell.com/support/home/en-in/product-support/product/networker/drivers
19.2.x
19.3.x
19.4.x
19.5.x

Note: Only NetWorker Management Console Server and NetWorker Authentication Server components are impacted by these third-party vulnerabilities.

Revision History

RevisionDateDescription
1.02022-01-12Initial Release
1.12022-01-19Added Note to Affected Product and Remediation

Related Information


Article Properties


Affected Product

NetWorker Family, NetWorker, Product Security Information

Last Published Date

19 Jan 2022

Version

3

Article Type

Dell Security Advisory