Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Enjoy members-only rewards and discounts
  • Create and access a list of your products
Some article numbers may have changed. If this isn't what you're looking for, try searching all articles. Search articles

DSA-2021-301: Dell EMC SRM and Dell EMC Storage Monitoring and Reporting (SMR) Security Update for Apache Log4j Remote Code Execution Vulnerability (CVE-2021-44228, CVE-2021-45046, and CVE-2021-45105)

Summary: Dell EMC SRM and Dell EMC SMR remediation is available for the Apache Log4j Remote Code Execution Vulnerability that may be exploited by malicious users to compromise the affected system. Dell recommends implementing this remediation as soon as possible in light of the critical severity of the vulnerability. ...

This article applies to   This article does not apply to 

Impact

Critical

Details

Third-Party Component CVEs More information
Apache Log4j CVE-2021-44228 Apache Log4j Remote Code Execution
Apache Log4j CVE-2021-45046 Apache Log4j Remote Code Execution
Apache Log4j CVE-2021-45105 Apache Log4j Remote Code Execution
Third-Party Component CVEs More information
Apache Log4j CVE-2021-44228 Apache Log4j Remote Code Execution
Apache Log4j CVE-2021-45046 Apache Log4j Remote Code Execution
Apache Log4j CVE-2021-45105 Apache Log4j Remote Code Execution
Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.

Affected Products & Remediation

Product Affected Versions Updated Versions Link to Update
Dell EMC SRM 4.5.0.0 and 4.5.0.1 4.5.0.2 https://support.emc.com/downloads/34247_SRM
 
Dell EMC SRM 4.6.0.0 and 4.6.0.1 4.6.0.2 https://support.emc.com/downloads/34247_SRM
 
Dell EMC SMR 4.5.0.0 and 4.5.0.1 4.5.0.2 https://support.emc.com/downloads/40532_SMR
Dell EMC SMR 4.6.0.0 and 4.6.0.1 4.6.0.2 https://support.emc.com/downloads/40532_SMR
Product Affected Versions Updated Versions Link to Update
Dell EMC SRM 4.5.0.0 and 4.5.0.1 4.5.0.2 https://support.emc.com/downloads/34247_SRM
 
Dell EMC SRM 4.6.0.0 and 4.6.0.1 4.6.0.2 https://support.emc.com/downloads/34247_SRM
 
Dell EMC SMR 4.5.0.0 and 4.5.0.1 4.5.0.2 https://support.emc.com/downloads/40532_SMR
Dell EMC SMR 4.6.0.0 and 4.6.0.1 4.6.0.2 https://support.emc.com/downloads/40532_SMR

Revision History

RevisionDateDescription
1.02021-12-16Initial version
1.12021-12-21Updated Affected Products and Remediation
1.22022-01-11Updated to include additional CVEs and patches

Related Information

Affected Products

EMC Storage Monitoring and Reporting, SRM, Product Security Information, SRM

Products

Storage Monitoring and Reporting
Article Properties
Article Number: 000194613
Article Type: Dell Security Advisory
Last Modified: 11 Jan 2022
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.