Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Enjoy members-only rewards and discounts
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.

Article Number: 000153681


DSA-2020-193: Dell VxRail Appliance Security Update for Multiple Third-Party Component Vulnerabilities

Summary: Dell VxRail remediation is available for multiple security vulnerabilities that may be exploited by malicious users to compromise the affected system.

Article Content


Impact

Critical

Details

Third-party Component CVEs More information
VMware vRealize Log Insight CVE-2020-3953 VMSA-2020-0007.1
CVE-2020-3954
Dell 14G SSD CVE-2020-0527 Dell KB article SLN321779: DSA-2020-147: Dell Server Platform Security Advisory for the 2020.1 Intel Platform Updates (June 2020) - Intel SSD
Dell 14G iDRAC9 CVE-2020-5366 Dell KB article SLN322125: DSA-2020-128 - iDRAC Local File Inclusion Vulnerability
Dell 14G iDRAC9 CVE-2020-5344 Dell KB article SLN320717: DSA-2020-063 - iDRAC Buffer Overflow Vulnerability
Quanta BMC CVE-2015-8325 Multiple OpenSSH 6.x Vulnerabilities
CVE-2016-3115
Quanta BIOS CVE-2018-12127 https://go.qct.io/mds-security-issue/
Intel-SA-00233
CVE-2018-12126
CVE-2018-12130
CVE-2019-11091
Dell SRS   Dell KB article 544057: DSA-2020-133
VMware ESXi 6.7 CVE-2020-3976 VMSA-2020-0018

For more information about any of the Common Vulnerabilities and Exposures (CVEs) mentioned here, consult the National Vulnerability Database (NVD) at http://nvd.nist.gov/home.cfm

To search for a particular CVE, use the database s search utility at http://web.nvd.nist.gov/view/vuln/search.
Third-party Component CVEs More information
VMware vRealize Log Insight CVE-2020-3953 VMSA-2020-0007.1
CVE-2020-3954
Dell 14G SSD CVE-2020-0527 Dell KB article SLN321779: DSA-2020-147: Dell Server Platform Security Advisory for the 2020.1 Intel Platform Updates (June 2020) - Intel SSD
Dell 14G iDRAC9 CVE-2020-5366 Dell KB article SLN322125: DSA-2020-128 - iDRAC Local File Inclusion Vulnerability
Dell 14G iDRAC9 CVE-2020-5344 Dell KB article SLN320717: DSA-2020-063 - iDRAC Buffer Overflow Vulnerability
Quanta BMC CVE-2015-8325 Multiple OpenSSH 6.x Vulnerabilities
CVE-2016-3115
Quanta BIOS CVE-2018-12127 https://go.qct.io/mds-security-issue/
Intel-SA-00233
CVE-2018-12126
CVE-2018-12130
CVE-2019-11091
Dell SRS   Dell KB article 544057: DSA-2020-133
VMware ESXi 6.7 CVE-2020-3976 VMSA-2020-0018

For more information about any of the Common Vulnerabilities and Exposures (CVEs) mentioned here, consult the National Vulnerability Database (NVD) at http://nvd.nist.gov/home.cfm

To search for a particular CVE, use the database s search utility at http://web.nvd.nist.gov/view/vuln/search.
Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.

Affected Products and Remediation

Affected products:      
Dell VxRail Appliance 4.5.x versions before 4.5.450


Remediation:      
The following Dell VxRail Appliance release addresses these vulnerabilities:  

  • Dell VxRail Appliance version 4.5.450

Dell recommends all customers upgrade at the earliest opportunity.

Affected products:      
Dell VxRail Appliance 4.5.x versions before 4.5.450


Remediation:      
The following Dell VxRail Appliance release addresses these vulnerabilities:  

  • Dell VxRail Appliance version 4.5.450

Dell recommends all customers upgrade at the earliest opportunity.

Related Information


Article Properties


Affected Product
Pivotal Ready Architecture, Product Security Information, VxRail 460 and 470 Nodes, VxRail Appliance Family, VxRail Appliance Series, VxRail G410, VxRail G Series Nodes, VxRail D Series Nodes, VxRail D560, VxRail D560F, VxRail E Series Nodes , VxRail E460, VxRail E560, VxRail E560 VCF, VxRail E560F, VxRail E560F VCF, VxRail E560N, VxRail E560N VCF, VxRail E660, VxRail E660F, VxRail E665F, VxRail E665N, VxRail G560, VxRail G560 VCF, VxRail G560F, VxRail G560F VCF, VxRail Gen2 Hardware, VxRail P Series Nodes, VxRail P470, VxRail P570, VxRail P570 VCF, VxRail P570F, VxRail P570F VCF, VxRail P580N, VxRail P580N VCF, VXRAIL P670F, VxRail P675F, VxRail P675N, VxRail S Series Nodes, VxRail S470, VxRail S570, VxRail Software, VxRail V Series Nodes, VxRail V470, VxRail V570, VxRail V570 VCF, VxRail V570F, VxRail V570F VCF, VXRAIL V670F ...
Last Published Date

29 Jul 2022

Version

6

Article Type

Dell Security Advisory