DSA-2021-219: Dell EMC PowerFlex rack Security Update for a Cisco Nexus switch Vulnerability
Summary: Dell EMC PowerFlex rack remediation is available for a Cisco switch (Cisco Nexus 3000 Series Switches and Cisco Nexus 9000 Series Switches) security vulnerability that could be exploited by malicious users to compromise the affected system. ...
This article applies to
This article does not apply to
This article is not tied to any specific product.
Not all product versions are identified in this article.
Impact
Critical
Details
| Third-Party Component | CVE(s) | More information |
| Cisco Switch | CVE-2021-1361 | CSCvw89875 |
| Third-Party Component | CVE(s) | More information |
| Cisco Switch | CVE-2021-1361 | CSCvw89875 |
Affected Products & Remediation
| CVE(s) Addressed | Product | Affected RCM Version(s) | Updated RCM Version(s) | Fix package included in RCM |
| CVE-2021-1361 | PowerFlex rack | Versions prior to 3.3.10.0 | 3.3.10.0 | Nexus OS 9.3(7) |
| Versions prior to 3.4.4.2 | 3.4.4.2 | Nexus OS 9.3(7) | ||
| Versions prior to 3.5.4.2 | 3.5.4.2 | Nexus OS 9.3(7) | ||
| Versions prior to 3.6.1.0 | 3.6.1.0 | Nexus OS 9.3(7) |
Links to update:
- For RCM release information: https://cpsdocs.dellemc.com/rcm/#/home
- For RCM download: https://vce.flexnetoperations.com/control/vcec/product?plneID=740417
| CVE(s) Addressed | Product | Affected RCM Version(s) | Updated RCM Version(s) | Fix package included in RCM |
| CVE-2021-1361 | PowerFlex rack | Versions prior to 3.3.10.0 | 3.3.10.0 | Nexus OS 9.3(7) |
| Versions prior to 3.4.4.2 | 3.4.4.2 | Nexus OS 9.3(7) | ||
| Versions prior to 3.5.4.2 | 3.5.4.2 | Nexus OS 9.3(7) | ||
| Versions prior to 3.6.1.0 | 3.6.1.0 | Nexus OS 9.3(7) |
Links to update:
- For RCM release information: https://cpsdocs.dellemc.com/rcm/#/home
- For RCM download: https://vce.flexnetoperations.com/control/vcec/product?plneID=740417
Workarounds & Mitigations
Customers on the affected RCM versions are highly recommended to upgrade to the latest RCM versions.
Revision History
| Revision | Date | Description |
| 1.0 | 2021-10-19 | Initial Release |
| 2.0 | 2021-10-22 | Updated Affected Products and Remediation: CVE addressed |
Related Information
Legal Disclaimer
Affected Products
PowerFlex rack, Product Security Information, PowerFlex SoftwareArticle Properties
Article Number: 000192692
Article Type: Dell Security Advisory
Last Modified: 30 Oct 2021
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.