Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Enjoy members-only rewards and discounts
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.

Article Number: 000224465


DSA-2024-194: Security Update for Dell PowerFlex Rack Multiple Third-Party Component Vulnerabilities

Summary: Dell PowerFlex Rack remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system.

Article Content


Impact

High

Details

Third-party Component CVEs More Information
Dell PowerEdge Server BIOS CVE-2023-32460, CVE-2023-23583, CVE-2023-45229, CVE-2023-45230, CVE-2023-45231, CVE-2023-45232, CVE-2023-45233, CVE-2023-45234, CVE-2023-45235, CVE-2023-45236, CVE-2023-45237, CVE-2023-20592, CVE-2024-0172 DSA-2023-361
DSA-2023-370
DSA-2023-357
DSA-2023-391
DSA-2024-035

 
CloudLink CVE-2023-20593, CVE-2023-31085, CVE-2023-39189, CVE-2023-39192, CVE-2023-39193, CVE-2023-39194, CVE-2023-42754, CVE-2023-45862, CVE-2023-45871, CVE-2023-5717 https://nvd.nist.gov/This hyperlink is taking you to a website outside of Dell Technologies.
Cisco Switches CVE-2024-20294, CVE-2024-20291, CVE-2024-20267, CVE-2022-41742, CVE-2022-41741, CVE-2021-3618, CVE-2017-20005, CVE-2021-23017, CVE-2019-20372, CVE-2018-16845, CVE-2017-7529, CVE-2016-1247, CVE-2016-4450, CVE-2016-0747, CVE-2016-0746, CVE-2016-0742 Cisco Advisories This hyperlink is taking you to a website outside of Dell Technologies.
VMWare CVE-2024-22252, CVE-2024-22253, CVE-2024-22254, CVE-2024-22255 VMSA-2024-0006.1 This hyperlink is taking you to a website outside of Dell Technologies. 
NetBIOS CVE-2023-0673  
Embedded OS CVE-2023-48795 https://nvd.nist.gov/  This hyperlink is taking you to a website outside of Dell Technologies.
 

Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.

Affected Products and Remediation

Product Software/Firmware Affected Versions Remediated Versions Link
PowerFlex Rack RCM Versions prior to 3.6.6.0 Version 3.6.6.0 RCM release

Product Software/Firmware Affected Versions Remediated Versions Link
PowerFlex Rack RCM Versions prior to 3.6.6.0 Version 3.6.6.0 RCM release

Revision History

RevisionDateDescription
1.02024-04-24Initial Release
2.02024-04-29Added CVE-2023-48795

 

Related Information


Article Properties


Affected Product

PowerFlex rack, PowerFlex rack connectivity, PowerFlex rack HW, PowerFlex rack RCM Software, Product Security Information

Last Published Date

01 May 2024

Version

6

Article Type

Dell Security Advisory