DSA-2023-304: Security Update for Dell Data Protection Central for Third-Party Components Vulnerabilities
Summary: Dell Data Protection Central remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system.
This article applies to
This article does not apply to
This article is not tied to any specific product.
Not all product versions are identified in this article.
Impact
Critical
Details
| Third-party Component | CVEs | More Information |
|---|---|---|
| SUSE Linux Enterprise Server 12 SP5 | CVE-2007-4559, CVE-2022-3566, CVE-2022-45154, CVE-2022-45884, CVE-2022-45885, CVE-2022-45886, CVE-2022-45887, CVE-2022-45919, CVE-2023-1077, CVE-2023-1079, CVE-2023-1249, CVE-2023-1380, CVE-2023-1637, CVE-2023-2002, CVE-2023-20867, CVE-2023-2176, CVE-2023-2194, CVE-2023-22006, CVE-2023-22036, CVE-2023-22041, CVE-2023-22044, CVE-2023-22045, CVE-2023-22049, CVE-2023-2269, CVE-2023-2513, CVE-2023-2603, CVE-2023-2650, CVE-2023-26555, CVE-2023-2828, CVE-2023-28466, CVE-2023-2953, CVE-2023-3090, CVE-2023-31084, CVE-2023-3111, CVE-2023-3138, CVE-2023-3141, CVE-2023-31436, CVE-2023-31484, CVE-2023-3159, CVE-2023-3161, CVE-2023-32001, CVE-2023-32269, CVE-2023-3268, CVE-2023-3358, CVE-2023-3446, CVE-2023-34969, CVE-2023-35824, CVE-2023-38408 | https://www.suse.com/security/cve/ |
| Third-party Component | CVEs | More Information |
|---|---|---|
| SUSE Linux Enterprise Server 12 SP5 | CVE-2007-4559, CVE-2022-3566, CVE-2022-45154, CVE-2022-45884, CVE-2022-45885, CVE-2022-45886, CVE-2022-45887, CVE-2022-45919, CVE-2023-1077, CVE-2023-1079, CVE-2023-1249, CVE-2023-1380, CVE-2023-1637, CVE-2023-2002, CVE-2023-20867, CVE-2023-2176, CVE-2023-2194, CVE-2023-22006, CVE-2023-22036, CVE-2023-22041, CVE-2023-22044, CVE-2023-22045, CVE-2023-22049, CVE-2023-2269, CVE-2023-2513, CVE-2023-2603, CVE-2023-2650, CVE-2023-26555, CVE-2023-2828, CVE-2023-28466, CVE-2023-2953, CVE-2023-3090, CVE-2023-31084, CVE-2023-3111, CVE-2023-3138, CVE-2023-3141, CVE-2023-31436, CVE-2023-31484, CVE-2023-3159, CVE-2023-3161, CVE-2023-32001, CVE-2023-32269, CVE-2023-3268, CVE-2023-3358, CVE-2023-3446, CVE-2023-34969, CVE-2023-35824, CVE-2023-38408 | https://www.suse.com/security/cve/ |
Affected Products & Remediation
| Product | Software/Firmware | Affected Versions | Remediated Versions | Link |
|---|---|---|---|---|
| Dell Data Protection Central | Data Protection Central OS Update (SUSE SLES 12 SP5) | Version 19.4 through 19.9.0-10 | Version 19.4 through 19.9.0-10 | Apply Latest Data Protection Central OS Update |
| PowerProtect DP Series Appliance | Data Protection Central OS Update for Power Protect DP Series Appliances | Version 2.6 through 2.7.4 | Version 2.7 or later with DPC OS update July 2023 patch | Apply Latest Data Protection Central OS Update |
| Product | Software/Firmware | Affected Versions | Remediated Versions | Link |
|---|---|---|---|---|
| Dell Data Protection Central | Data Protection Central OS Update (SUSE SLES 12 SP5) | Version 19.4 through 19.9.0-10 | Version 19.4 through 19.9.0-10 | Apply Latest Data Protection Central OS Update |
| PowerProtect DP Series Appliance | Data Protection Central OS Update for Power Protect DP Series Appliances | Version 2.6 through 2.7.4 | Version 2.7 or later with DPC OS update July 2023 patch | Apply Latest Data Protection Central OS Update |
- Platform: SUSE Linux Enterprise Server 12 SP5
- Versions 19.4 through 19.9.0-10 covers DPC version 19.4.x, 19.5.x, 19.6.x, 19.7.x, 19.8.x, 19.9.x.
Version 2.7 or later covers Power Protect DP Series Appliances version 2.7.x
To upgrade your Dell Data Protection Central system or PowerProtect DP Series Appliance Dell Data Protection Central, see https://www.dell.com/support/kbdoc/en-us/000034881/data-protection-central-how-to-install-the-data-protection-central-os-update for installation instructions. For PowerProtect DP Series (IDPA) Appliances running PowerProtect DP Series below 2.7, the appliance should be first upgraded to any 2.7.x version (Version 2.7.2 is preferred) and then the aforementioned DP Central patch should be applied.
For PowerProtect DP Series (IDPA) Appliance running PowerProtect DP Series 2.7.3, the aforementioned DP Central patch should be applied directly.
See the latest ‘Data Protection Central OS Update’ file in https://www.dell.com/support/home/en-us/product-support/product/data-protection-central/drivers
See the latest ‘Data Protection Central OS Updates Release Notes’ in https://www.dell.com/support/home/en-us/product-support/product/data-protection-central/docs
The DPC version number remains the same in the DPC OS Update distribution that provides the fixes. Examine the /etc/dpc-osupdate file to confirm execution of DPC OS Update; this file will contain the line:
version=1.1.15-1
Revision History
| Revision | Date | Description |
|---|---|---|
| 1.0 | 2023-08-28 | Initial Release |
Related Information
Legal Disclaimer
Affected Products
PowerProtect Data Protection Appliance, Data Protection Central, Integrated Data Protection Appliance Family, Integrated Data Protection Appliance SoftwareArticle Properties
Article Number: 000217023
Article Type: Dell Security Advisory
Last Modified: 19 Sep 2025
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.