DSA-2021-051: Dell EMC PowerFlex appliance Security Update for Multiple Third-Party Component Vulnerability
Summary: Dell EMC PowerFlex appliance contains remediation for multiple third-party components vulnerabilities that may be exploited by malicious users to compromise the affected system.
This article applies to
This article does not apply to
This article is not tied to any specific product.
Not all product versions are identified in this article.
Impact
High
Details
| Third-Party Component | CVE(s) | More information | |
|---|---|---|---|
| Embedded OS-sudo | CVE-2021-3156 | See NVD (http://nvd.nist.gov/ |
|
| Intel | CVE-2020-0587 | INTEL-SA-00358 INTEL-SA-00391 INTEL-SA-00390 |
|
| CVE-2020-0588 | |||
| CVE-2020-0590 | |||
| CVE-2020-0591 | |||
| CVE-2020-0592 | |||
| CVE-2020-0593 | |||
| CVE-2020-8705 | |||
| CVE-2020-8696 | |||
| CVE-2020-8674 | |||
| CVE-2020-8738 | |||
| CVE-2020-8739 | |||
| CVE-2020-8740 | |||
| Third-Party Component | CVE(s) | More information | |
|---|---|---|---|
| Embedded OS-sudo | CVE-2021-3156 | See NVD (http://nvd.nist.gov/ |
|
| Intel | CVE-2020-0587 | INTEL-SA-00358 INTEL-SA-00391 INTEL-SA-00390 |
|
| CVE-2020-0588 | |||
| CVE-2020-0590 | |||
| CVE-2020-0591 | |||
| CVE-2020-0592 | |||
| CVE-2020-0593 | |||
| CVE-2020-8705 | |||
| CVE-2020-8696 | |||
| CVE-2020-8674 | |||
| CVE-2020-8738 | |||
| CVE-2020-8739 | |||
| CVE-2020-8740 | |||
Affected Products & Remediation
| CVEs | Product | Affected Software/Firmware version | Updated Software/Firmware version | Link to Update |
|---|---|---|---|---|
| CVE-2021-3156 | PowerFlex appliance | Versions prior to Intelligent_Catalog_361_354_A05 Versions prior to Intelligent_Catalog_361_360_A04 |
Intelligent_Catalog_361_354_A05 Intelligent_Catalog_361_360_A04 |
https://www.dell.com/support/home/en-us/product-support/product/vxflex-appliance-sw/drivers Fixes are available for Dell Server PowerEdge BIOS R630/R730/R730XD (13G) : BIOS Version 2.12.0 |
| CVE-2020-0587 | ||||
| CVE-2020-0588 | ||||
| CVE-2020-0590 | ||||
| CVE-2020-0591 | ||||
| CVE-2020-0592 | ||||
| CVE-2020-0593 | ||||
| CVE-2020-8705 | ||||
| CVE-2020-8696 | ||||
| CVE-2020-8674 | ||||
| CVE-2020-8738 | ||||
| CVE-2020-8739 | ||||
| CVE-2020-8740 |
| CVEs | Product | Affected Software/Firmware version | Updated Software/Firmware version | Link to Update |
|---|---|---|---|---|
| CVE-2021-3156 | PowerFlex appliance | Versions prior to Intelligent_Catalog_361_354_A05 Versions prior to Intelligent_Catalog_361_360_A04 |
Intelligent_Catalog_361_354_A05 Intelligent_Catalog_361_360_A04 |
https://www.dell.com/support/home/en-us/product-support/product/vxflex-appliance-sw/drivers Fixes are available for Dell Server PowerEdge BIOS R630/R730/R730XD (13G) : BIOS Version 2.12.0 |
| CVE-2020-0587 | ||||
| CVE-2020-0588 | ||||
| CVE-2020-0590 | ||||
| CVE-2020-0591 | ||||
| CVE-2020-0592 | ||||
| CVE-2020-0593 | ||||
| CVE-2020-8705 | ||||
| CVE-2020-8696 | ||||
| CVE-2020-8674 | ||||
| CVE-2020-8738 | ||||
| CVE-2020-8739 | ||||
| CVE-2020-8740 |
Revision History
| Revision | Date | Description |
| 1.0 | 2021-03-03 | Initial Release |
| 2.0 | 2023-04-21 | Reformatted for improved presentation without any changes to content.. |
Related Information
Legal Disclaimer
Affected Products
PowerFlex Appliance, PowerEdge R630, PowerEdge R730, PowerEdge R730xd, Product Security Information, PowerFlex Software, PowerFlex appliance R640, PowerFlex appliance R740XD, PowerFlex appliance R840Article Properties
Article Number: 000183770
Article Type: Dell Security Advisory
Last Modified: 21 Apr 2023
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.