DSA-2020-106: Dell Networking Security Advisory for the 2020.1 Intel Platform Update (IPU)
Summary: Virtual Edge Platform 4600 (VEP4600) contains remediation for 2020.1 Intel Platform Update (IPU) that could be exploited by malicious users to compromise the affected system.
Impact
High
Details
Intel-SA-00266: 2020.1 IPU Intel® SSD Advisory
- CVE-2020-0527
Customers should also review their OS vendor’s Security Advisory for information, to ensure appropriate vulnerability identification and patch/configuration measures to be used in conjunction with the updates provided by Dell for the most effective mitigation.
For more information about any of the Common Vulnerabilities and Exposures (CVEs) mentioned here, consult the National Vulnerability Database (NVD) at http://nvd.nist.gov/home.cfm. To search for a particular CVE, use the database’s search utility at http://web.nvd.nist.gov/view/vuln/search.
Intel-SA-00266: 2020.1 IPU Intel® SSD Advisory
- CVE-2020-0527
Customers should also review their OS vendor’s Security Advisory for information, to ensure appropriate vulnerability identification and patch/configuration measures to be used in conjunction with the updates provided by Dell for the most effective mitigation.
For more information about any of the Common Vulnerabilities and Exposures (CVEs) mentioned here, consult the National Vulnerability Database (NVD) at http://nvd.nist.gov/home.cfm. To search for a particular CVE, use the database’s search utility at http://web.nvd.nist.gov/view/vuln/search.
Affected Products & Remediation
Affected products:
Dell Networking Virtual Edge Platform 4600 (VEP 4600)
Remediation:
The following Dell Networking Virtual Edge Platform release contains a resolution to this vulnerability.
We encourage customers to review Intel’s Security Advisory for information, including appropriate identification and mitigation measures. Please visit the Drivers and Downloads site for updates on the applicable products. Note, the following list of impacted products with released BIOS updates are linked. To learn more, visit the Dell Knowledge Base article Dell Updating Firmware using Dell Update Packages (DUP’s), and download the update for your Dell computer.
Customers may use one of the Dell notification solutions to be notified and download driver, BIOS and firmware updates automatically once available.
Dell recommends all customers upgrade at the earliest opportunity.
Affected products:
Dell Networking Virtual Edge Platform 4600 (VEP 4600)
Remediation:
The following Dell Networking Virtual Edge Platform release contains a resolution to this vulnerability.
We encourage customers to review Intel’s Security Advisory for information, including appropriate identification and mitigation measures. Please visit the Drivers and Downloads site for updates on the applicable products. Note, the following list of impacted products with released BIOS updates are linked. To learn more, visit the Dell Knowledge Base article Dell Updating Firmware using Dell Update Packages (DUP’s), and download the update for your Dell computer.
Customers may use one of the Dell notification solutions to be notified and download driver, BIOS and firmware updates automatically once available.
Dell recommends all customers upgrade at the earliest opportunity.
Workarounds & Mitigations
None
Revision History
| Revision | Date | Description |
|---|---|---|
| 1.0 | 2020-12-09 | Initial Release |