DSA-2025-441: Security Update for Dell PowerProtect Data Manager Multiple Third-Party Component Vulnerabilities

Summary: Dell PowerProtect Data Manager remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system.

This article applies to This article does not apply to This article is not tied to any specific product. Not all product versions are identified in this article.

Impact

Critical

Additional Details

The Affected Products and Remediation table above may not be a comprehensive list of all affected supported versions and may be updated as more information becomes available.

Details

Third-party Component

CVEs

More Information

PPDM Core: Spring Framework 6.0.23

CVE-2025-41234, CVE-2025-22233, CVE-2024-38820, CVE-2024-38819

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

jackson-databind 2.15.4

CVE-2023-35116

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

Reporting: Apache Commons BeanUtils 1.9.4

CVE-2025-48734

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

Apache Commons Lang 3.17.0

CVE-2025-48924

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

Apache CXF 4.1.2

CVE-2025-48913

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

Apache Tomcat 10.1.41

CVE-2025-55754, CVE-2025-55752, CVE-2025-48988, CVE-2025-52520, CVE-2025-53506, CVE-2025-48989, CVE-2025-49124, CVE-2025-55668, CVE-2025-49125, CVE-2025-61795

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

Bouncy Castle 1.78.1

CVE-2025-8916

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

Netty Project 4.1.121.Final

CVE-2025-55163, CVE-2025-58057, CVE-2025-58056

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

PostgreSQL JDBC Driver (pgjdbc) 42.7.5

CVE-2025-49146

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

RabbitMQ amqp-client 5.16.1

CVE-2023-46120

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

Spring Framework 6.2.7

CVE-2025-41249, CVE-2025-41234, CVE-2025-41242

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

Spring Security 6.5.0

CVE-2025-41248

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

PPDM Kubernetes cProxy: golang.org/x/oauth2 v0.19.0

CVE-2025-22868

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

SQLite

CVE-2022-35737

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

PPDM Agents: Python Programming Language 3.13.7

CVE-2024-9287, CVE-2024-7592, CVE-2024-6232, CVE-2023-27043

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

cares 1.34.5

CVE-2024-25629, CVE-2023-31124

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

Sqlite 3.50.4

CVE-2025-3277, CVE-2025-6965, CVE-2025-29087

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

Openssl 3.0.16

CVE-2024-6119

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

Libexpat 2.7.1

CVE-2024-45491, CVE-2024-45492, CVE-2024-28757, CVE-2024-45490

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

Operating System (OS)

CVE-2025-9640, CVE-2025-9230, CVE-2025-9086, CVE-2025-8715, CVE-2025-8714, CVE-2025-8713, CVE-2025-8194, CVE-2025-6442, CVE-2025-6069, CVE-2025-59375, CVE-2025-58364, CVE-2025-58060, CVE-2025-54388, CVE-2025-50106, CVE-2025-50059, CVE-2025-48385, CVE-2025-48384, CVE-2025-46835, CVE-2025-4517, CVE-2025-4516, CVE-2025-4435, CVE-2025-4330, CVE-2025-4138, CVE-2025-41244, CVE-2025-39869, CVE-2025-39860, CVE-2025-39824, CVE-2025-39823, CVE-2025-39797, CVE-2025-39790, CVE-2025-39751, CVE-2025-39746, CVE-2025-39726, CVE-2025-39703, CVE-2025-39691, CVE-2025-38734, CVE-2025-38713, CVE-2025-38706, CVE-2025-38685, CVE-2025-38678, CVE-2025-38664, CVE-2025-38659, CVE-2025-38644, CVE-2025-38618, CVE-2025-38617, CVE-2025-38608, CVE-2025-38572, CVE-2025-38563, CVE-2025-38560, CVE-2025-38555, CVE-2025-38553, CVE-2025-38546, CVE-2025-38499, CVE-2025-38498, CVE-2025-38497, CVE-2025-38495, CVE-2025-38494, CVE-2025-38488, CVE-2025-38477, CVE-2025-38476, CVE-2025-38470, CVE-2025-38468, CVE-2025-38460, CVE-2025-38380, CVE-2025-38352, CVE-2025-38350, CVE-2025-38323, CVE-2025-38257, CVE-2025-38213, CVE-2025-38212, CVE-2025-38206, CVE-2025-38200, CVE-2025-38184, CVE-2025-38181, CVE-2025-38180, CVE-2025-38177, CVE-2025-38120, CVE-2025-38111, CVE-2025-38088, CVE-2025-38085, CVE-2025-38084, CVE-2025-38079, CVE-2025-37958, CVE-2025-37885, CVE-2025-37738, CVE-2025-32086, CVE-2025-30754, CVE-2025-30749, CVE-2025-30698, CVE-2025-30691, CVE-2025-27614, CVE-2025-27613, CVE-2025-27221, CVE-2025-26597, CVE-2025-26403, CVE-2025-23155, CVE-2025-22889, CVE-2025-22840, CVE-2025-22839, CVE-2025-21971, CVE-2025-21881, CVE-2025-21587, CVE-2025-21502, CVE-2025-20109, CVE-2025-20053, CVE-2025-10230, CVE-2025-10148, CVE-2025-0938, CVE-2024-9287, CVE-2024-58240, CVE-2024-58239, CVE-2024-53164, CVE-2024-47175, CVE-2024-42265, CVE-2024-3651, CVE-2024-35221, CVE-2024-26643, CVE-2024-21235, CVE-2024-21217, CVE-2024-21210, CVE-2024-21208, CVE-2024-21147, CVE-2024-21145, CVE-2024-21140, CVE-2024-21138, CVE-2024-21131, CVE-2024-21094, CVE-2024-21068, CVE-2024-21012, CVE-2024-21011, CVE-2024-20952, CVE-2024-20945, CVE-2024-20932, CVE-2024-20921, CVE-2024-20919, CVE-2024-20918, CVE-2024-12718, CVE-2024-11168, CVE-2023-53530, CVE-2023-53526, CVE-2023-53525, CVE-2023-53524, CVE-2023-53521, CVE-2023-53519, CVE-2023-53518, CVE-2023-53515, CVE-2023-53513, CVE-2023-53512, CVE-2023-53509, CVE-2023-53506, CVE-2023-53505, CVE-2023-53499, CVE-2023-53498, CVE-2023-53496, CVE-2023-53494, CVE-2023-53492, CVE-2023-53488, CVE-2023-53487, CVE-2023-53485, CVE-2023-53476, CVE-2023-53475, CVE-2023-53474, CVE-2023-53473, CVE-2023-53472, CVE-2023-53471, CVE-2023-53468, CVE-2023-53465, CVE-2023-53464, CVE-2023-53463, CVE-2023-53458, CVE-2023-53457, CVE-2023-53454, CVE-2023-53453, CVE-2023-53452, CVE-2023-53451, CVE-2023-53449, CVE-2023-53446, CVE-2023-53443, CVE-2023-53440, CVE-2023-53438, CVE-2023-53437, CVE-2023-53436, CVE-2023-53435, CVE-2023-53431, CVE-2023-53427, CVE-2023-53422, CVE-2023-53416, CVE-2023-53415, CVE-2023-53414, CVE-2023-53413, CVE-2023-53409, CVE-2023-53406, CVE-2023-53405, CVE-2023-53404, CVE-2023-53400, CVE-2023-53396, CVE-2023-53395, CVE-2023-53393, CVE-2023-53390, CVE-2023-53388, CVE-2023-53386, CVE-2023-53384, CVE-2023-53381, CVE-2023-53380, CVE-2023-53379, CVE-2023-53377, CVE-2023-53375, CVE-2023-53373, CVE-2023-53368, CVE-2023-53359, CVE-2023-53356, CVE-2023-53352, CVE-2023-53349, CVE-2023-53344, CVE-2023-53337, CVE-2023-53335, CVE-2023-53334, CVE-2023-53333, CVE-2023-53331, CVE-2023-53330, CVE-2023-53326, CVE-2023-53324, CVE-2023-53322, CVE-2023-53321, CVE-2023-53317, CVE-2023-53316, CVE-2023-53315, CVE-2023-53314, CVE-2023-53313, CVE-2023-53311, CVE-2023-53309, CVE-2023-53307, CVE-2023-53305, CVE-2023-53304, CVE-2023-53302, CVE-2023-53299, CVE-2023-53298, CVE-2023-53297, CVE-2023-53295, CVE-2023-53288, CVE-2023-53286, CVE-2023-53282, CVE-2023-53281, CVE-2023-53280, CVE-2023-53277, CVE-2023-53276, CVE-2023-53275, CVE-2023-53273, CVE-2023-53272, CVE-2023-53270, CVE-2023-53268, CVE-2023-53265, CVE-2023-53259, CVE-2023-53255, CVE-2023-53251, CVE-2023-53250, CVE-2023-53249, CVE-2023-53246, CVE-2023-53245, CVE-2023-53244, CVE-2023-53242, CVE-2023-53241, CVE-2023-53239, CVE-2023-53238, CVE-2023-53234, CVE-2023-53230, CVE-2023-53229, CVE-2023-53226, CVE-2023-53223, CVE-2023-53222, CVE-2023-53219, CVE-2023-53216, CVE-2023-53213, CVE-2023-53205, CVE-2023-53201, CVE-2023-53199, CVE-2023-53197, CVE-2023-53196, CVE-2023-53185, CVE-2023-53182, CVE-2023-53179, CVE-2023-53178, CVE-2023-53176, CVE-2023-53174, CVE-2023-53171, CVE-2023-53167, CVE-2023-53165, CVE-2023-53153, CVE-2023-53151, CVE-2023-53150, CVE-2023-53149, CVE-2023-53147, CVE-2023-53117, CVE-2023-52927, CVE-2023-52923, CVE-2023-5178, CVE-2023-48161, CVE-2023-43787, CVE-2023-43786, CVE-2023-43785, CVE-2023-34969, CVE-2023-3138, CVE-2023-25193, CVE-2023-22081, CVE-2023-22049, CVE-2023-22045, CVE-2023-22044, CVE-2023-22041, CVE-2023-22036, CVE-2023-22025, CVE-2023-22006, CVE-2023-21968, CVE-2023-21967, CVE-2023-21954, CVE-2023-21939, CVE-2023-21938, CVE-2023-21937, CVE-2023-21930, CVE-2023-21843, CVE-2023-21835, CVE-2022-50469, CVE-2022-50468, CVE-2022-50467, CVE-2022-50466, CVE-2022-50465, CVE-2022-50460, CVE-2022-50459, CVE-2022-50458, CVE-2022-50456, CVE-2022-50454, CVE-2022-50453, CVE-2022-50449, CVE-2022-50444, CVE-2022-50443, CVE-2022-50440, CVE-2022-50439, CVE-2022-50437, CVE-2022-50436, CVE-2022-50435, CVE-2022-50434, CVE-2022-50432, CVE-2022-50431, CVE-2022-50430, CVE-2022-50429, CVE-2022-50428, CVE-2022-50427, CVE-2022-50425, CVE-2022-50423, CVE-2022-50422, CVE-2022-50419, CVE-2022-50417, CVE-2022-50414, CVE-2022-50411, CVE-2022-50410, CVE-2022-50409, CVE-2022-50408, CVE-2022-50404, CVE-2022-50402, CVE-2022-50401, CVE-2022-50399, CVE-2022-50395, CVE-2022-50394, CVE-2022-50392, CVE-2022-50391, CVE-2022-50389, CVE-2022-50388, CVE-2022-50386, CVE-2022-50385, CVE-2022-50381, CVE-2022-50379, CVE-2022-50376, CVE-2022-50375, CVE-2022-50374, CVE-2022-50373, CVE-2022-50372, CVE-2022-50370, CVE-2022-50369, CVE-2022-50368, CVE-2022-50367, CVE-2022-50364, CVE-2022-50362, CVE-2022-50359, CVE-2022-50358, CVE-2022-50355, CVE-2022-50353, CVE-2022-50351, CVE-2022-50349, CVE-2022-50348, CVE-2022-50347, CVE-2022-50346, CVE-2022-50344, CVE-2022-50342, CVE-2022-50340, CVE-2022-50333, CVE-2022-50331, CVE-2022-50330, CVE-2022-50329, CVE-2022-50328, CVE-2022-50324, CVE-2022-50321, CVE-2022-50320, CVE-2022-50318, CVE-2022-50317, CVE-2022-50312, CVE-2022-50309, CVE-2022-50308, CVE-2022-50301, CVE-2022-50299, CVE-2022-50298, CVE-2022-50297, CVE-2022-50294, CVE-2022-50289, CVE-2022-50286, CVE-2022-50282, CVE-2022-50279, CVE-2022-50278, CVE-2022-50277, CVE-2022-50276, CVE-2022-50275, CVE-2022-50272, CVE-2022-50271, CVE-2022-50269, CVE-2022-50268, CVE-2022-50267, CVE-2022-50266, CVE-2022-50264, CVE-2022-50261, CVE-2022-50260, CVE-2022-50258, CVE-2022-50257, CVE-2022-50255, CVE-2022-50252, CVE-2022-50251, CVE-2022-50250, CVE-2022-50249, CVE-2022-50248, CVE-2022-50247, CVE-2022-50246, CVE-2022-50241, CVE-2022-50239, CVE-2022-50235, CVE-2022-50234, CVE-2022-50233, CVE-2022-49980, CVE-2022-49138, CVE-2022-42012, CVE-2022-42011, CVE-2022-42010, CVE-2022-39399, CVE-2022-3628, CVE-2022-3555, CVE-2022-3554, CVE-2022-34169, CVE-2022-28506, CVE-2022-21628, CVE-2022-21624, CVE-2022-21619, CVE-2022-21618, CVE-2022-21549, CVE-2022-21541, CVE-2022-21540, CVE-2022-21496, CVE-2022-21476, CVE-2022-21449, CVE-2022-21443, CVE-2022-21434, CVE-2022-21426, CVE-2022-21366, CVE-2022-21365, CVE-2022-21360, CVE-2022-21341, CVE-2022-21340, CVE-2022-21305, CVE-2022-21299, CVE-2022-21296, CVE-2022-21294, CVE-2022-21293, CVE-2022-21291, CVE-2022-21283, CVE-2022-21282, CVE-2022-21277, CVE-2022-21248, CVE-2021-40633, CVE-2021-35603, CVE-2021-35586, CVE-2021-35578, CVE-2021-35567, CVE-2021-35564, CVE-2021-35561, CVE-2021-35559, CVE-2021-35556, CVE-2021-31535, CVE-2020-35512, CVE-2020-2521, CVE-2020-14363, CVE-2020-14344, CVE-2020-12049, CVE-2019-15133, CVE-2019-12749, CVE-2018-14600, CVE-2018-14599, CVE-2018-14598, CVE-2018-11490, CVE-2016-3977, CVE-2015-7555, CVE-2015-0245, CVE-2014-8148, CVE-2014-7824, CVE-2014-3639, CVE-2014-3637, CVE-2014-3636, CVE-2013-2063, CVE-2013-1998, CVE-2013-1995, CVE-2013-1987, CVE-2013-1984, CVE-2013-1982

https://nvd.nist.gov/vuln/searchThis hyperlink is taking you to a website outside of Dell Technologies.

Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.

Affected Products & Remediation

Product

Software/Firmware

Affected Versions

Remediated Versions

Link

Dell PowerProtect Data Manager

PPDM SW

Versions prior to 19.22

Version 19.22 build 16 or later

PowerProtect Data Manager (PPDM) Version 19.22 | Drivers & Downloads

Product

Software/Firmware

Affected Versions

Remediated Versions

Link

Dell PowerProtect Data Manager

PPDM SW

Versions prior to 19.22

Version 19.22 build 16 or later

PowerProtect Data Manager (PPDM) Version 19.22 | Drivers & Downloads

Revision History

Revision

Date

Description

1.0

2025-11-20

Initial Release

2.0

2025-12-02

Updated Impact Section to update overall severity; no new CVEs or additional content added. 

Related Information

Affected Products

PowerProtect Data Manager Appliance, PowerProtect Data Manager, PowerProtect Data Manager Essentials, PowerProtect Data Manager Appliance DM5510 Software
Article Properties
Article Number: 000394500
Article Type: Dell Security Advisory
Last Modified: 03 Dec 2025
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.