DSA-2020-213: VxRail Appliance Security Update for Multiple Component Vulnerabilities

Summary: Dell EMC VxRail remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system.

This article applies to This article does not apply to This article is not tied to any specific product. Not all product versions are identified in this article.

Impact

Critical

Details

NA

Third-party Component CVE Number More information
VMware ESXi 6.7 CVE-2020-3976 VMSA-2020-0018
Dell EMC 14G iDRAC9 CVE-2020-5366 DSA-2020-128 - iDRAC Local File Inclusion Vulnerability
Quanta BMC CVE-2015-8325
CVE-2016-3115
Multiple OpenSSH 6.x Vulnerabilities
Quanta BIOS CVE-2018-12127 https://go.qct.io/mds-security-issue/
Intel-SA-00233
CVE-2018-12126
CVE-2018-12130
CVE-2019-11091
Intel Processors Data Leakage Advisory CVE-2020-0548
CVE-2020-0549
DSA-2020-123: Dell EMC Server Platform Security Advisory for Intel SA-00329   Intel® Processors Data Leakage Advisory
For more information about any of the Common Vulnerabilities and Exposures (CVEs) mentioned here, consult the National Vulnerability Database (NVD) at http://nvd.nist.gov/home.cfm .  
To search for a particular CVE, use the database s search utility at
http://web.nvd.nist.gov/view/vuln/search.

Third-party Component CVE Number More information
VMware ESXi 6.7 CVE-2020-3976 VMSA-2020-0018
Dell EMC 14G iDRAC9 CVE-2020-5366 DSA-2020-128 - iDRAC Local File Inclusion Vulnerability
Quanta BMC CVE-2015-8325
CVE-2016-3115
Multiple OpenSSH 6.x Vulnerabilities
Quanta BIOS CVE-2018-12127 https://go.qct.io/mds-security-issue/
Intel-SA-00233
CVE-2018-12126
CVE-2018-12130
CVE-2019-11091
Intel Processors Data Leakage Advisory CVE-2020-0548
CVE-2020-0549
DSA-2020-123: Dell EMC Server Platform Security Advisory for Intel SA-00329   Intel® Processors Data Leakage Advisory
For more information about any of the Common Vulnerabilities and Exposures (CVEs) mentioned here, consult the National Vulnerability Database (NVD) at http://nvd.nist.gov/home.cfm .  
To search for a particular CVE, use the database s search utility at
http://web.nvd.nist.gov/view/vuln/search.

Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.

Affected Products & Remediation

Affected products:  Dell EMC VxRail Appliance 4.7.x versions prior to 4.7.515.

Remediation
The following Dell EMC VxRail Appliance release contains a resolution to these vulnerabilities: 
  • Dell EMC VxRail Appliance version 4.7.515

Dell EMC recommends all customers upgrade at the earliest opportunity.
 
Affected products:  Dell EMC VxRail Appliance 4.7.x versions prior to 4.7.515.

Remediation
The following Dell EMC VxRail Appliance release contains a resolution to these vulnerabilities: 
  • Dell EMC VxRail Appliance version 4.7.515

Dell EMC recommends all customers upgrade at the earliest opportunity.
 

Related Information

Affected Products

Product Security Information, VMWare Cloud on Dell EMC VxRail E560F, VMWare Cloud on Dell EMC VxRail E560N, VxRail 460 and 470 Nodes, VxRail Appliance Family, VxRail Appliance Series, VxRail G410, VxRail G Series Nodes, VxRail D Series Nodes , VxRail D560, VxRail D560F, VxRail E Series Nodes, VxRail E460, VxRail E560, VxRail E560F, VxRail E560N, VxRail E560N VCF, VxRail E660, VxRail E660F, VxRail E665F, VxRail E665N, VxRail G560, VxRail G560 VCF, VxRail G560F, VxRail Gen2 Hardware, VxRail P Series Nodes, VxRail P470, VxRail P570, VxRail P570 VCF, VxRail P570F, VxRail P570F VCF, VxRail P580N, VxRail P580N VCF, VxRail P670F, VxRail P675F, VxRail P675N, VxRail S Series Nodes, VxRail S470, VxRail S570, VxRail Software, VxRail V Series Nodes, VxRail V470, VxRail V570, VxRail V570 VCF, VxRail V570F, VxRail V570F VCF, VXRAIL V670F ...
Article Properties
Article Number: 000153703
Article Type: Dell Security Advisory
Last Modified: 19 Sep 2025
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.