DSA-2023-423: Security Update for Dell Security Management Server Apache ActiveMQ RCE Vulnerability

Summary: Dell Security Management Server remediation is available for Apache ActiveMQ RCE vulnerability that could be exploited by malicious users to compromise the affected system.

This article applies to This article does not apply to This article is not tied to any specific product. Not all product versions are identified in this article.

Impact

Critical

Details

Third-party Component CVEs More Information
Apache ActiveMQ CVE-2023-46604 See NVD (https://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.) or the following advisories for individual scores for each CVE.
activemq.apache.org/security-advisories.data/CVE-2023-46604-announcement.txtThis hyperlink is taking you to a website outside of Dell Technologies.

Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.

Affected Products & Remediation

Product
Software/Firmware
 
Affected Versions Remediated Versions Link
Dell Security Management Server SW Versions Before 11.9.0 Versions 11.9.0 or later Dell Security Management Server | Driver Details
Product
Software/Firmware
 
Affected Versions Remediated Versions Link
Dell Security Management Server SW Versions Before 11.9.0 Versions 11.9.0 or later Dell Security Management Server | Driver Details

Revision History

RevisionDateDescription
1.02023-12-20Initial Release

Related Information

Affected Products

Dell Encryption
Article Properties
Article Number: 000220142
Article Type: Dell Security Advisory
Last Modified: 21 Dec 2023
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.