Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Enjoy members-only rewards and discounts
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.

Article Number: 000218418


DSA-2023-384: Security Update for Dell Precision Rack Multiple Tianocore EDK2 Vulnerabilities

Summary: Dell Precision Rack remediation is available for multiple Tianocore EDK2 vulnerabilities that could be exploited by malicious users to compromise the affected system.

Article Content


Impact

High

Additional Details

The Affected Products and Remediation table above may not be a comprehensive list of all affected supported versions and may be updated as more information becomes available.

Details

Third-Party Component CVE(s) More information
Tianocore EDK2 CVE-2023-45229, CVE-2023-45230, CVE-2023-45231, CVE-2023-45232, CVE-2023-45233, CVE-2023-45234, CVE-2023-45235, CVE-2023-45236, CVE-2023-45237 See NVD (https://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.) or the following advisories for individual scores for each CVE

Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.

Affected Products and Remediation

Product Software/Firmware Affected Versions Remediated Versions BIOS Release Date Link
Precision 7920 Rack BIOS Versions prior to 2.20.1 Version 2.20.1 or later 11/30/2023 Go to the Drivers & Downloads site for updates.
7920 XL Rack BIOS Versions prior to 2.20.1 Version 2.20.1 or later 11/30/2023 Go to the Drivers & Downloads site for updates.
Precision 7910 Rack BIOS Versions prior to 2.18.0 Version 2.18.0 or later 12/6/2023 Go to the Drivers & Downloads site for updates.
Precision 7910 XL Rack BIOS Versions prior to 2.18.0 Version 2.18.0 or later 12/6/2023 Go to the Drivers & Downloads site for updates.
 Precision 7960 Rack BIOS Versions prior to 2.0.0 Version BIOS 2.0.0 or later 01/23/2024 Go to the Drivers & Downloads site for updates.
Precision 7960 XL Rack BIOS Versions prior to 2.0.0 Version BIOS 2.0.0 or later 01/23/2024 Go to the Drivers & Downloads site for updates.
Product Software/Firmware Affected Versions Remediated Versions BIOS Release Date Link
Precision 7920 Rack BIOS Versions prior to 2.20.1 Version 2.20.1 or later 11/30/2023 Go to the Drivers & Downloads site for updates.
7920 XL Rack BIOS Versions prior to 2.20.1 Version 2.20.1 or later 11/30/2023 Go to the Drivers & Downloads site for updates.
Precision 7910 Rack BIOS Versions prior to 2.18.0 Version 2.18.0 or later 12/6/2023 Go to the Drivers & Downloads site for updates.
Precision 7910 XL Rack BIOS Versions prior to 2.18.0 Version 2.18.0 or later 12/6/2023 Go to the Drivers & Downloads site for updates.
 Precision 7960 Rack BIOS Versions prior to 2.0.0 Version BIOS 2.0.0 or later 01/23/2024 Go to the Drivers & Downloads site for updates.
Precision 7960 XL Rack BIOS Versions prior to 2.0.0 Version BIOS 2.0.0 or later 01/23/2024 Go to the Drivers & Downloads site for updates.

Revision History

RevisionDateDescription
1.02023-01-16Initial Release
2.02024-01-23Updated Affected Products and Remediation section: Final Platform list update

Related Information


Article Properties


Affected Product

R7910 XL, 7920 XL Rack, Precision 7960 XL Rack, Precision 7920 Rack, Precision Rack 7910, Precision 7960 Rack

Last Published Date

23 Jan 2024

Article Type

Dell Security Advisory