DSA-2022-219: Dell PowerEdge Server Security Update for Intel August 2022 Security Advisories (2022.2 IPU)
Summary: Dell PowerEdge Server remediation is available for 2022.2 Intel Platform Update (IPU) components, part of Intel’s August 2022 security advisories that may be exploited by malicious users to compromise the affected system. ...
Impact
Medium
Details
| Third-party Component | CVEs | More information |
| Intel BIOS firmware and microcode | CVE-2022-21233 | INTEL-SA-00657 |
| Intel SPS | CVE-2022-26074 | INTEL-SA-00669 |
| Intel BIOS firmware and microcode | CVE-2021-33060 | INTEL-SA-00686 |
| Third-party Component | CVEs | More information |
| Intel BIOS firmware and microcode | CVE-2022-21233 | INTEL-SA-00657 |
| Intel SPS | CVE-2022-26074 | INTEL-SA-00669 |
| Intel BIOS firmware and microcode | CVE-2021-33060 | INTEL-SA-00686 |
Affected Products & Remediation
*BIOS version 1.7.4 has been removed from download due to the Intel sighting reported here. New remediated versions are listed as following.
| Product |
Affected Versions |
Updated Versions or greater |
Link to Update |
| R750 |
Before 1.7.5 |
1.7.5 |
|
| R750XA |
Before 1.7.5 |
1.7.5 |
|
| R650 |
Before 1.7.5 |
1.7.5 |
|
| C6520 |
Before 1.7.5 |
1.7.5 |
|
| MX750c |
Before 1.7.5 |
1.7.5 |
|
| R550 |
Before 1.7.5 |
1.7.5 |
|
| T550 |
Before 1.7.5 |
1.7.5 |
|
| R450 |
Before 1.7.5 |
1.7.5 |
|
| R650XS |
Before 1.7.5 |
1.7.5 |
|
| R750XS |
Before 1.7.5 |
1.7.5 |
|
| XR11 |
Before 1.7.5 |
1.7.5 |
|
| XR12 |
Before 1.7.5 |
1.7.5 |
|
| R350 |
Before 1.3.3 |
1.3.3 |
|
| T350 |
Before 1.3.3 |
1.3.3 |
|
| R250 |
Before 1.3.3 |
1.3.3 |
|
| T150 |
Before 1.3.3 |
1.3.3 |
|
| T130 |
Before 2.15.0 |
2.15.0 |
|
| R230 |
Before 2.15.0 |
2.15.0 |
|
| T330 |
Before 2.15.0 |
2.15.0 |
|
| R330 |
Before 2.15.0 |
2.15.0 |
Note: The table above may not be a comprehensive list of all affected supported versions and may be updated as more information becomes available.
*BIOS version 1.7.4 has been removed from download due to the Intel sighting reported here. New remediated versions are listed as following.
| Product |
Affected Versions |
Updated Versions or greater |
Link to Update |
| R750 |
Before 1.7.5 |
1.7.5 |
|
| R750XA |
Before 1.7.5 |
1.7.5 |
|
| R650 |
Before 1.7.5 |
1.7.5 |
|
| C6520 |
Before 1.7.5 |
1.7.5 |
|
| MX750c |
Before 1.7.5 |
1.7.5 |
|
| R550 |
Before 1.7.5 |
1.7.5 |
|
| T550 |
Before 1.7.5 |
1.7.5 |
|
| R450 |
Before 1.7.5 |
1.7.5 |
|
| R650XS |
Before 1.7.5 |
1.7.5 |
|
| R750XS |
Before 1.7.5 |
1.7.5 |
|
| XR11 |
Before 1.7.5 |
1.7.5 |
|
| XR12 |
Before 1.7.5 |
1.7.5 |
|
| R350 |
Before 1.3.3 |
1.3.3 |
|
| T350 |
Before 1.3.3 |
1.3.3 |
|
| R250 |
Before 1.3.3 |
1.3.3 |
|
| T150 |
Before 1.3.3 |
1.3.3 |
|
| T130 |
Before 2.15.0 |
2.15.0 |
|
| R230 |
Before 2.15.0 |
2.15.0 |
|
| T330 |
Before 2.15.0 |
2.15.0 |
|
| R330 |
Before 2.15.0 |
2.15.0 |
Note: The table above may not be a comprehensive list of all affected supported versions and may be updated as more information becomes available.
Revision History
| Revision | Date | Description |
| 1.0 | 2022-08-09 | Initial release |
| 2.0 | 2022-08-25 | Updated "Affected Products and Remediation" section |
| 2.1 | 2022-10-11 | Updated "Affected Products and Remediation" section to include version 1.7.5 |
| 3.0 | 2024-03-05 | Changed CVE-2022-33060 to CVE-2021-33060. |