DSA-2020-206: Dell Client Platform Security Update for Treck TCP/IP Stack Vulnerabilities in Teradici Firmware and Remote Workstation Cards
Summary: Dell Client Platforms require a security update to address a vulnerability within the Treck TCP/IP stack used in the Teradici Tera2 Zero Client firmware and the Tera2 Remote Workstation Card. ...
Impact
Medium
Details
|
Third-party Component |
CVE(s) |
More information |
|---|---|---|
|
Teradici Tera2 Zero Client Teradici Tera2 Remote Workstation Card |
CVE-2020-11903 |
See the Teradici advisory TERA-SA-000057 for additional details.
See NVD (http://nvd.nist.gov/) for individual scores for each CVE. |
For more information about any of the Common Vulnerabilities and Exposures (CVEs) mentioned here, consult the National Vulnerability Database (NVD) at http://nvd.nist.gov/home.cfm. To search for a particular CVE, use the database’s search utility at http://web.nvd.nist.gov/view/vuln/search.
|
Third-party Component |
CVE(s) |
More information |
|---|---|---|
|
Teradici Tera2 Zero Client Teradici Tera2 Remote Workstation Card |
CVE-2020-11903 |
See the Teradici advisory TERA-SA-000057 for additional details.
See NVD (http://nvd.nist.gov/) for individual scores for each CVE. |
For more information about any of the Common Vulnerabilities and Exposures (CVEs) mentioned here, consult the National Vulnerability Database (NVD) at http://nvd.nist.gov/home.cfm. To search for a particular CVE, use the database’s search utility at http://web.nvd.nist.gov/view/vuln/search.
Affected Products & Remediation
Affected products:
- Dell Precision platforms with installed remote workstation cards using Teradici firmware (see Resolution section below for complete list of affected products)
- Dell Wyse 5030 Zero Clients (Wyse P25)
- Dell Wyse 5050 All-In-One Zero Clients
- Dell Wyse 7030 Zero Clients (Wyse P45)
To get a concise list of the drivers available for your Dell computer, refer to the Dell Knowledge Base article How do I download and install a device driver?.
Remediation:
Refer to the table at the end of this document for Dell Client releases containing a resolution to the vulnerability. Dell recommends all customers update to the latest firmware version at the earliest opportunity.
Dell Client Consumer and Commercial Platforms Affected
The following is a list of impacted products, firmware update versions and release dates:
|
Product |
Update BIOS Version |
Release Date (MM/DD/YYYY) |
|---|---|---|
|
Precision 3630 Tower |
17.05 for customers without an all access subscription
2020.04 for customers with an all access subscription |
June 16, 2020 |
|
Precision 3630 XL Tower |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Precision 3430 XL |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Precision 3431 Tower |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Precision 5820 Tower |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Precision 5820 XL Tower |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Precision 7820 Tower |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Precision 7820 XL Tower |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Precision 7920 Tower |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Precision 7920 XL Tower |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Precision 7920 Rack |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Precision 7920 XL Rack |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Precision 3930 Rack |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Precision 3930 XL Rack |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Wyse 5030 Zero Client (Wyse P25) |
17.05 for customers without an all access subscription
2020.04 for customers with an all access subscription |
June 16, 2020 |
|
Wyse 5050 All-In-One Zero Client |
17.05 for customers without an all access subscription
2020.04 for customers with an all access subscription |
June 16, 2020 |
|
Wyse 7030 Zero Client (Wyse P45) |
17.05 for customers without an all access subscription
2020.04 for customers with an all access subscription |
June 16, 2020 |
Affected products:
- Dell Precision platforms with installed remote workstation cards using Teradici firmware (see Resolution section below for complete list of affected products)
- Dell Wyse 5030 Zero Clients (Wyse P25)
- Dell Wyse 5050 All-In-One Zero Clients
- Dell Wyse 7030 Zero Clients (Wyse P45)
To get a concise list of the drivers available for your Dell computer, refer to the Dell Knowledge Base article How do I download and install a device driver?.
Remediation:
Refer to the table at the end of this document for Dell Client releases containing a resolution to the vulnerability. Dell recommends all customers update to the latest firmware version at the earliest opportunity.
Dell Client Consumer and Commercial Platforms Affected
The following is a list of impacted products, firmware update versions and release dates:
|
Product |
Update BIOS Version |
Release Date (MM/DD/YYYY) |
|---|---|---|
|
Precision 3630 Tower |
17.05 for customers without an all access subscription
2020.04 for customers with an all access subscription |
June 16, 2020 |
|
Precision 3630 XL Tower |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Precision 3430 XL |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Precision 3431 Tower |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Precision 5820 Tower |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Precision 5820 XL Tower |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Precision 7820 Tower |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Precision 7820 XL Tower |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Precision 7920 Tower |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Precision 7920 XL Tower |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Precision 7920 Rack |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Precision 7920 XL Rack |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Precision 3930 Rack |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Precision 3930 XL Rack |
17.05 for customers who don’t have all access subscription
2020.04 for customers who have all access subscription |
June 16, 2020 |
|
Wyse 5030 Zero Client (Wyse P25) |
17.05 for customers without an all access subscription
2020.04 for customers with an all access subscription |
June 16, 2020 |
|
Wyse 5050 All-In-One Zero Client |
17.05 for customers without an all access subscription
2020.04 for customers with an all access subscription |
June 16, 2020 |
|
Wyse 7030 Zero Client (Wyse P45) |
17.05 for customers without an all access subscription
2020.04 for customers with an all access subscription |
June 16, 2020 |