DSA-2019-132: Dell EMC Connectrix Security Update for Multiple Security Vulnerabilities

This article applies to This article does not apply to This article is not tied to any specific product. Not all product versions are identified in this article.

Impact

High

Details

Summary:     
Dell EMC Connectrix requires a security update to address various vulnerabilities.

  • CVE-2018-6443

For more information, see https://www.broadcom.com/support/fibre-channel-networking/security-advisories/brocade-security-advisory-2018-743

  • CVE-2018-6446

For more information, see https://www.broadcom.com/support/fibre-channel-networking/security-advisories/brocade-security-advisory-2018-841

For more information about any of the Common Vulnerabilities and Exposures (CVEs) mentioned here, consult the National Vulnerability Database (NVD) at http://nvd.nist.gov/home.cfm.  

To search for a particular CVE, use the database s search utility at http://web.nvd.nist.gov/view/vuln/search.

  • CVE-2018-6443

For more information, see https://www.broadcom.com/support/fibre-channel-networking/security-advisories/brocade-security-advisory-2018-743

  • CVE-2018-6446

For more information, see https://www.broadcom.com/support/fibre-channel-networking/security-advisories/brocade-security-advisory-2018-841

For more information about any of the Common Vulnerabilities and Exposures (CVEs) mentioned here, consult the National Vulnerability Database (NVD) at http://nvd.nist.gov/home.cfm.  

To search for a particular CVE, use the database s search utility at http://web.nvd.nist.gov/view/vuln/search.

Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.

Affected Products & Remediation

Affected products:     

  • For CVE-2018-6443: Dell EMC Connectrix Manager Converged Network Edition (CMCNE), all versions

  • For CVE-2018-6446: Dell EMC Connectrix Manager Converged Network Edition (CMCNE), versions prior to 14.3.1


Remediation:      
For CVE-2018-6446, the following Dell EMC Connectrix release addresses this vulnerability:      

  • Dell EMC Connectrix Manager Converged Network Edition (CMCNE) version 14.3.1 and later

Customers can download software from Dell EMC Online Support at https://support.emc.com/products/23304?siteLocale=en_US


For CVE-2018-6443, customers can refer to the solution in Broadcom advisory: https://www.broadcom.com/support/fibre-channel-networking/security-advisories/brocade-security-advisory-2018-743



Affected products:     

  • For CVE-2018-6443: Dell EMC Connectrix Manager Converged Network Edition (CMCNE), all versions

  • For CVE-2018-6446: Dell EMC Connectrix Manager Converged Network Edition (CMCNE), versions prior to 14.3.1


Remediation:      
For CVE-2018-6446, the following Dell EMC Connectrix release addresses this vulnerability:      

  • Dell EMC Connectrix Manager Converged Network Edition (CMCNE) version 14.3.1 and later

Customers can download software from Dell EMC Online Support at https://support.emc.com/products/23304?siteLocale=en_US


For CVE-2018-6443, customers can refer to the solution in Broadcom advisory: https://www.broadcom.com/support/fibre-channel-networking/security-advisories/brocade-security-advisory-2018-743



Related Information

Affected Products

Connectrix Manager Converged Network Edition

Products

Connectrix, Connectrix Manager Converged Network Edition, Product Security Information
Article Properties
Article Number: 000153795
Article Type: Dell Security Advisory
Last Modified: 22 May 2021
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.