DSA-2021-295: Dell EMC PowerStore Family Security Update for Apache Log4j Remote Code Execution Vulnerability (CVE-2021-44228, CVE-2021-45046, CVE-2021-45105, CVE-2021-44832, and CVE-2022-23307)
Summary: Dell EMC PowerStore Family remediation is available for the Apache Log4j Remote Code Execution Vulnerability that may be exploited by malicious users to compromise the affected system. Dell recommends implementing this remediation as soon as possible in light of the critical severity of the vulnerability. ...
This article applies to
This article does not apply to
This article is not tied to any specific product.
Not all product versions are identified in this article.
Impact
Critical
Details
| Third-party Component | CVEs | More information |
| Apache log4j | CVE-2021-44228 | Apache Log4j Remote Code Execution |
| CVE-2021-45046 | ||
| CVE-2021-45105 | ||
| CVE-2021-44832 | ||
| CVE-2022-23307 |
| Third-party Component | CVEs | More information |
| Apache log4j | CVE-2021-44228 | Apache Log4j Remote Code Execution |
| CVE-2021-45046 | ||
| CVE-2021-45105 | ||
| CVE-2021-44832 | ||
| CVE-2022-23307 |
Affected Products & Remediation
| CVEs Addressed | Product | Affected Versions | Updated Versions | Link to Update |
| CVE-2021-44228 | Dell EMC PowerStore Family Operating System |
Versions before 2.0.1.3-1538564 | PowerStore T OS Upgrade 2.0.1.3-1538564 PowerStore X OS Upgrade 2.0.1.3-1538564 PowerStore T OS Upgrade 2.1.0.0-1561821 |
https://www.dell.com/support/home/?app=drivers |
| CVE-2021-45046 | ||||
| CVE-2021-45105 | Dell EMC PowerStore Family Operating System |
Versions before 2.1.1.0-1649887 | PowerStore T OS Upgrade 2.1.1.0-1649887 PowerStore X OS 2.1.1.0-1649887 |
https://www.dell.com/support/home/?app=drivers See KB article 196367: DSA-2022-014: Dell EMC PowerStore Family Security Update for Multiple Vulnerabilities |
| CVE-2021-44832 | ||||
| CVE-2022-23307 |
| CVEs Addressed | Product | Affected Versions | Updated Versions | Link to Update |
| CVE-2021-44228 | Dell EMC PowerStore Family Operating System |
Versions before 2.0.1.3-1538564 | PowerStore T OS Upgrade 2.0.1.3-1538564 PowerStore X OS Upgrade 2.0.1.3-1538564 PowerStore T OS Upgrade 2.1.0.0-1561821 |
https://www.dell.com/support/home/?app=drivers |
| CVE-2021-45046 | ||||
| CVE-2021-45105 | Dell EMC PowerStore Family Operating System |
Versions before 2.1.1.0-1649887 | PowerStore T OS Upgrade 2.1.1.0-1649887 PowerStore X OS 2.1.1.0-1649887 |
https://www.dell.com/support/home/?app=drivers See KB article 196367: DSA-2022-014: Dell EMC PowerStore Family Security Update for Multiple Vulnerabilities |
| CVE-2021-44832 | ||||
| CVE-2022-23307 |
Revision History
| Revision | Date | Description |
| 1.0 | 2021-12-30 | Initial Release |
| 2.0 | 2022-01-26 | Updated Affected Products and Remediation section: Affected Versions, Updated Versions, and Link to Update |
| 3.0 | 2022-04-20 | Updated Affected Products and Remediation sections: Updated Versions and Link to Update. |
Related Information
Legal Disclaimer
Affected Products
PowerStore, PowerStore 1000X, PowerStore 1000T, PowerStore 3000X, PowerStore 3000T, PowerStore 5000X, PowerStore 5000T, PowerStore 500T, PowerStore 7000X, PowerStore 7000T, PowerStore 9000X, PowerStore 9000T, Product Security InformationArticle Properties
Article Number: 000194739
Article Type: Dell Security Advisory
Last Modified: 21 Apr 2022
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.